[VIM] Dovecot 'LIST' Command Denial of Service Vulnerability

George Theall gtheall at tenable.com
Wed Aug 14 12:51:31 CDT 2013


Narayan / Venkat / Rob : Why does the newly issued BID 61763 reference CVE-2013-2111? According to http://www.openwall.com/lists/oss-security/2013/05/24/1, that CVE was assigned for the APPEND parameter DoS fixed in Dovecot 2.2.2 and is referenced already in BID 60052.

Also, is this new BID even for an issue that's a vulnerability? See, for example, http://www.openwall.com/lists/oss-security/2013/08/14/6. 

George
-- 
theall at tenable.com



More information about the VIM mailing list