CVE-2021-36093: DoS attack using PostMaster filters
It's possible to create an email which can be stuck while being processed by PostMaster filters, causing DoS. This issue affects: OTRS AG ((OTRS)) Community Edition 6.0.x version 6.0.1 and later versions. OTRS AG OTRS 7.0.x version 7.0.28 and prior versions; 8.0.x version 8.0.15 and prior versions.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2021-36093.
What is the severity of CVE-2021-36093?
The severity of CVE-2021-36093 is medium.
Which software versions are affected by CVE-2021-36093?
CVE-2021-36093 affects OTRS AG (OTRS) Community Edition 6.0.1 and later versions, OTRS AG OTRS 7.0.0 to 7.0.28, and OTRS AG OTRS 8.0.0 to 8.0.15.
How can CVE-2021-36093 be exploited?
CVE-2021-36093 can be exploited by creating an email that gets stuck while being processed by PostMaster filters, causing a Denial of Service (DoS) condition.
Is there a fix available for CVE-2021-36093?
Yes, a fix is available. Please refer to the official OTRS security advisory for more details.