PT-2026-28367 · Dovecot+3 · Dovecot+3
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L |
Name of the Vulnerable Software and Affected Versions
Dovecot versions prior to 2.4.3-1.1
Description
A mail message with a large number of RFC 2231 MIME parameters can cause excessive CPU usage in LMTP. A specially crafted message can lead to significant CPU time consumption during mail delivery. No publicly available exploits are known.
Recommendations
Upgrade to version 2.4.3-1.1 or later.
Limit RFC 2231 MIME parameters in mail messages using MTA capabilities.
Exploit
Fix
DoS
Resource Exhaustion
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Dovecot
Linuxmint
Red Os
Ubuntu