CVE-2021-38084
03.08.2021, 22:15
An issue was discovered in the POP3 component of Courier Mail Server before 1.1.5. Meddler-in-the-middle attackers can pipeline commands after the POP3 STLS command, injecting plaintext commands into an encrypted user session.
Vendor | Product | Version |
---|---|---|
courier-mta | courier_mail_server | 𝑥 < 1.1.5 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
References