A specially crafted email delivered over SMTP and passed on to Dovecot by MTA can trigger an out of bounds read resulting in potential sensitive information disclosure and denial of service. In order to trigger this vulnerability, an attacker needs to send a specially crafted email message to the server.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: talos
Published: 2018-03-02T15:00:00Z
Updated: 2024-09-16T23:00:46.355Z
Reserved: 2017-09-13T00:00:00
Link: CVE-2017-14461
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-03-02T15:29:00.210
Modified: 2024-11-21T03:12:50.433
Link: CVE-2017-14461
Redhat