Loading...
Loading...
The message parsing feature in Dovecot 1.1.4 and 1.1.5, when using the FETCH ENVELOPE command in the IMAP client, allows remote attackers to cause a denial of service (persistent crash) via an email with a malformed From address, which triggers an assertion error, aka "invalid message address parsing bug."
November 4, 2008
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2008-4907
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.