A missing release of memory after its effective lifetime vulnerability in the Webmail of FortiMail 6.4.0 through 6.4.4 and 6.2.0 through 6.2.6 may allow an unauthenticated remote attacker to exhaust available memory via specifically crafted login requests.
References
Link Resource
https://fortiguard.com/advisory/FG-IR-21-042 Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: fortinet

Published: 2021-07-12T12:53:27

Updated: 2021-07-12T12:53:27

Reserved: 2021-01-25T00:00:00


Link: CVE-2021-26090

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-07-12T13:15:07.827

Modified: 2021-07-13T19:26:47.023


Link: CVE-2021-26090

JSON object: View

cve-icon Redhat Information

No data.

CWE