https://seclists.org/oss-sec/2024/q1/165: CVE-2023-51747: SMTP smuggling in Apache James
Published Feb 27, 2024
·Updated
Affected Software
1 affected component
Apache James Server<3.7.5, >=3.8<3.8.0
Frequently Asked Questions
1
What is the severity of CVE-2023-51747?
The severity of CVE-2023-51747 is classified as important.
2
Which versions of Apache James Server are affected by CVE-2023-51747?
CVE-2023-51747 affects Apache James server through version 3.7.4 and versions 3.8 through 3.8.0.
3
How do I fix CVE-2023-51747?
To fix CVE-2023-51747, upgrade to Apache James server version 3.8.1 or later, or 3.7.5 or later.
4
What is the vulnerability type of CVE-2023-51747?
CVE-2023-51747 is a vulnerability related to SMTP smuggling due to lenient line delimiter handling.
5
What potential impact does CVE-2023-51747 have?
CVE-2023-51747 may cause different interpretations of email messages, leading to security risks in email processing.