CVE-2013-2111
Published May 27, 2014
Last updated 10 years ago
Overview
- Description
- The IMAP functionality in Dovecot before 2.2.2 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via invalid APPEND parameters.
- Source
- secalert@redhat.com
- NVD status
- Analyzed
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:N/A:P
Weaknesses
- nvd@nist.gov
- CWE-20
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:dovecot:dovecot:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0DB6684C-0046-4823-84F7-E366629538D2", "versionEndIncluding": "2.2.1" }, { "criteria": "cpe:2.3:a:dovecot:dovecot:2.2:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B11EF361-E553-402A-83EE-71D887FC9F69" }, { "criteria": "cpe:2.3:a:dovecot:dovecot:2.2:rc2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7E47CA62-99F7-4906-B6F6-245A4B22AC99" }, { "criteria": "cpe:2.3:a:dovecot:dovecot:2.2:rc3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "52F33ED8-9902-41B8-9189-462620FD62C7" }, { "criteria": "cpe:2.3:a:dovecot:dovecot:2.2:rc4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6741622C-7CCB-4FB7-AF17-EE95C3311D78" }, { "criteria": "cpe:2.3:a:dovecot:dovecot:2.2:rc5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "856E97CA-689D-409C-B8DF-AD95AA3CD7ED" }, { "criteria": "cpe:2.3:a:dovecot:dovecot:2.2:rc6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "89EF88D5-2FA2-4F97-BA26-9FD82D4CD37A" }, { "criteria": "cpe:2.3:a:dovecot:dovecot:2.2:rc7:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AF73C3A2-C646-4D46-9975-B6FEDD262542" }, { "criteria": "cpe:2.3:a:dovecot:dovecot:2.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9260A530-7A6D-4223-94B6-D3DCDF7FF331" } ], "operator": "OR" } ] } ]