Input validation error in Dovecot - CVE-2020-25275
Published: January 4, 2021
Dovecot
Dovecot
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient validation of user-supplied input when processing messages with more than 10 000 MIME parts. A remote attacker can send a specially crafted message to the application and perform a denial of service (DoS) attack.
Note, this vulnerability was introduced by the fix for #VU45671.