USN-6982-1: Dovecot vulnerabilities
Published Sep 2, 2024
·Updated
It was discovered that Dovecot did not not properly have restrictions on ithe size of address headers. A remote attacker could possibly use this issue to cause denial of service. (CVE-2024-23184, CVE-2024-23185)
Affected Software
2 affected componentsFixes available
All of the following
ubuntu/dovecot-core<1:2.3.21+dfsg1-2ubuntu6
1:2.3.21+dfsg1-2ubuntu6
Ubuntu Ubuntu=24.04
Event History
Sep 2, 2024
Advisory Published
via Ubuntu·12:00 AM
Frequently Asked Questions
1
What is the severity of USN-6982-1?
The severity of USN-6982-1 is classified as a potential denial of service vulnerability.
2
How do I fix USN-6982-1?
To fix USN-6982-1, you need to upgrade the Dovecot package to a version that addresses the vulnerability.
3
What versions of Dovecot are affected by USN-6982-1?
USN-6982-1 affects Dovecot version 1:2.3.21+dfsg1-2ubuntu6 on Ubuntu 24.04.
4
Can USN-6982-1 be exploited remotely?
Yes, a remote attacker could potentially exploit the vulnerability in USN-6982-1 to cause denial of service.
5
What components are related to USN-6982-1?
The related component for USN-6982-1 is the Dovecot email server.