USN-7013-1: Dovecot vulnerabilities
It was discovered that Dovecot incorrectly handled a large number of address headers. A remote attacker could possibly use this issue to cause Dovecot to consume resources, leading to a denial of service. (CVE-2024-23184) It was discovered that Dovecot incorrectly handled very large headers. A remote attacker could possibly use this issue to cause Dovecot to consume resources, leading to a denial of service. (CVE-2024-23185)
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-7013-1?
The severity of USN-7013-1 is classified as a denial of service vulnerability that can be exploited by remote attackers.
How do I fix USN-7013-1?
To fix USN-7013-1, update Dovecot to the latest available version in your Ubuntu distribution.
Which versions of Dovecot are affected by USN-7013-1?
Dovecot versions 1:2.3.16+dfsg1-3ubuntu2.4 for Ubuntu 22.04 and 1:2.3.7.2-1ubuntu3.7 for Ubuntu 20.04 are affected by USN-7013-1.
Can USN-7013-1 lead to unauthorized access?
USN-7013-1 does not directly lead to unauthorized access but can result in a denial of service, impacting availability.
What systems are impacted by USN-7013-1?
USN-7013-1 impacts systems running affected versions of Dovecot on Ubuntu 20.04 and 22.04.