CVE Vulnerabilities

CVE-2021-46853

Published: Nov 03, 2022 | Modified: May 05, 2025
CVSS 3.x
5.9
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Alpine before 2.25 allows remote attackers to cause a denial of service (application crash) when LIST or LSUB is sent before STARTTLS.

Affected Software

NameVendorStart VersionEnd Version
AlpineAlpine_project*2.25 (excluding)
AlpineUbuntubionic*
AlpineUbuntuesm-apps/bionic*
AlpineUbuntuesm-apps/focal*
AlpineUbuntuesm-apps/xenial*
AlpineUbuntufocal*
AlpineUbuntutrusty*
AlpineUbuntuupstream*
AlpineUbuntuxenial*

References