Security Advisory

CVE-2019-3814

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-03-27 12:20:45
Last updated 2024-08-04 19:19:18
Assigner redhat
CVSS score 7.7
State PUBLISHED

Description

It was discovered that Dovecot before versions 2.2.36.1 and 2.3.4.1 incorrectly handled client certificates. A remote attacker in possession of a valid certificate with an empty username field could possibly use this issue to impersonate other users.