VDB

GCVE-VVD-MAGEIA-2020-330

GCVE-VVD-MAGEIA-2020-330
Advisory Published
Vulnetix · Advisory published August 18, 2020
CVE-2020-12100: Receiving mail with deeply nested MIME parts leads to resource exhaustion as Dovecot attempts to parse it. CVE-2020-12673: Dovecot's NTLM implementation does not correctly check message buffer size, which leads to reading past allocation which can lead to crash. CVE-2020-12674: Dovecot's RPA mechanism implementation accepts zero-length message, which leads to assert-crash later on.

Affected Products

VendorProductVersionsPlatforms
Mageiadovecot0 (affected), 2.3.11.3-1.mga7 (unaffected)

Browse GCVE Records

100 records in the GCVE database · Updated April 16, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›