Integer overflow in imapparse.c for Cyrus IMAP server 1.4 and 2.1.10 allows remote malicious users to execute arbitrary code via a large length value that facilitates a buffer overflow attack, a different vulnerability than CVE-2002-1347.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
carnegie mellon university cyrus imap server 2.0.12 |
||
carnegie mellon university cyrus imap server 2.0.16 |
||
carnegie mellon university cyrus imap server 2.1.10 |
||
carnegie mellon university cyrus imap server 2.1.9 |
||
carnegie mellon university cyrus imap server 1.4 |
||
carnegie mellon university cyrus imap server 1.5.19 |