VYPR

rpm package

suse/dovecot&distro=SUSE Linux Enterprise Server for SAP Applications 12 SP1

pkg:rpm/suse/dovecot&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP1

Vulnerabilities (1)

  • CVE-2017-2669Jun 21, 2018
    affected < 2.2-3.1fixed 2.2-3.1

    Dovecot before version 2.2.29 is vulnerable to a denial of service. When 'dict' passdb and userdb were used for user authentication, the username sent by the IMAP/POP3 client was sent through var_expand() to perform %variable expansion. Sending specially crafted %variable fields