Amavis before 2.12.3 and 2.13.x before 2.13.1, in part because of its use of MIME-tools, has an Interpretation Conflict (relative to some mail user agents) when there are multiple boundary parameters in a MIME email message. Consequently, there can be an incorrect check for banned files or malware.
Metrics
Affected Vendors & Products
References
History
Thu, 27 Mar 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-436 | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published: 2024-03-18T00:00:00.000Z
Updated: 2025-03-27T14:46:30.472Z
Reserved: 2024-03-01T00:00:00.000Z
Link: CVE-2024-28054
Updated: 2024-08-02T00:48:47.793Z
Status : Awaiting Analysis
Published: 2024-03-18T17:15:07.360
Modified: 2025-03-27T15:15:51.183
Link: CVE-2024-28054
No data.