Memory leak in SOGo 2.3.7 allows remote attackers to cause a denial of service (memory consumption) via a large number of attempts to upload a large attachment, related to temporary files.
http://www.securityfocus.com/bid/96007
http://www.openwall.com/lists/oss-security/2016/07/09/3
https://sogo.nu/bugs/view.php?id=3510
https://github.com/inverse-inc/sogo/commit/32bb1456e23a32c7f45079c3985bf732dd0d276d
Source: Mitre, NVD
Published: 2017-02-03
Updated: 2025-04-20
Base Score: 6.8
Vector: CVSS2#AV:N/AC:L/Au:S/C:N/I:N/A:C
Severity: Medium
Base Score: 6.5
Vector: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS: 0.01516