Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2019-3814
Description:It was discovered that Dovecot before versions 2.2.36.1 and 2.3.4.1 incorrectly handled client certificates. A remote attacker in possession of a valid certificate with an empty username field could possibly use this issue to impersonate other users.
Test IDs: 1.3.6.1.4.1.25623.1.0.704385   1.3.6.1.4.1.25623.1.1.4.2019.0414.1   1.3.6.1.4.1.25623.1.0.852316   1.3.6.1.4.1.25623.1.1.12.2019.3881.2   1.3.6.1.4.1.25623.1.0.112510   1.3.6.1.4.1.25623.1.0.891667   1.3.6.1.4.1.25623.1.0.843898   1.3.6.1.4.1.25623.1.1.10.2019.0072  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2019-3814
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QHFZ5OWRIZGIWZJ5PTNVWWZNLLNH4XYS/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/4XLI55NGRDTGMVOPYFCPPFNPA5VKYSSY/
https://security.gentoo.org/glsa/201904-19
https://www.dovecot.org/list/dovecot/2019-February/114575.html
RedHat Security Advisories: RHSA-2019:3467
https://access.redhat.com/errata/RHSA-2019:3467
SuSE Security Announcement: openSUSE-SU-2019:1220 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00067.html




© 1998-2025 E-Soft Inc. All rights reserved.