CVE-2020-25275

HIGH7.5EPSS 3.4%
Published: 1/4/2021Modified: 12/3/2025
Also known as:ALPINE-CVE-2020-25275DEBIAN-CVE-2020-25275

Description

Dovecot before 2.3.13 has Improper Input Validation in lda, lmtp, and imap, leading to an application crash via a crafted email message with certain choices for ten thousand MIME parts.

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH7.5CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

References (2)