High severity7.5NVD Advisory· Published May 8, 2019· Updated Jun 17, 2026
CVE-2019-11494
CVE-2019-11494
Description
In the IMAP Server in Dovecot 2.3.3 through 2.3.5.2, the submission-login service crashes when the client disconnects prematurely during the AUTH command.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
12cpe:2.3:o:fedoraproject:fedora:29:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:fedoraproject:fedora:29:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:30:*:*:*:*:*:*:*
- Dovecot/IMAP Serverdescription
- Range: 2.3.3 - 2.3.5.2
- osv-coords5 versionspkg:rpm/opensuse/dovecot23&distro=openSUSE%20Leap%2015.0pkg:rpm/opensuse/dovecot23&distro=openSUSE%20Leap%2015.1pkg:rpm/opensuse/dovecot23&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/dovecot24&distro=openSUSE%20Tumbleweedpkg:rpm/suse/dovecot23&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Server%20Applications%2015%20SP1
< 2.3.3-lp150.14.1+ 4 more
- (no CPE)range: < 2.3.3-lp150.14.1
- (no CPE)range: < 2.3.3-lp151.2.6.1
- (no CPE)range: < 2.3.16-1.6
- (no CPE)range: < 2.4.0-1.1
- (no CPE)range: < 2.3.3-8.1
Patches
Vulnerability mechanics
References
6- lists.opensuse.org/opensuse-security-announce/2019-10/msg00024.htmlnvdMailing ListThird Party Advisory
- lists.opensuse.org/opensuse-security-announce/2019-10/msg00026.htmlnvdMailing ListThird Party Advisory
- www.dovecot.org/security.htmlnvdVendor Advisory
- www.dovecot.org/download.htmlnvdProduct
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4XLI55NGRDTGMVOPYFCPPFNPA5VKYSSY/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/QHFZ5OWRIZGIWZJ5PTNVWWZNLLNH4XYS/nvd
News mentions
0No linked articles in our index yet.