RSS   Vulnerabilities for 'Imapd'   RSS

2011-12-24
 
CVE-2011-3372

CWE-287
 

 
imap/nntpd.c in the NNTP server (nntpd) for Cyrus IMAPd 2.4.x before 2.4.12 allows remote attackers to bypass authentication by sending an AUTHINFO USER command without sending an additional AUTHINFO PASS command.

 
2006-05-22
 
CVE-2006-2502

 

 
Stack-based buffer overflow in pop3d in Cyrus IMAPD (cyrus-imapd) 2.3.2, when the popsubfolders option is enabled, allows remote attackers to execute arbitrary code via a long USER command.

 
2005-05-02
 
CVE-2005-0546

CWE-Other
 

 
Multiple buffer overflows in Cyrus IMAPd before 2.2.11 may allow attackers to execute arbitrary code via (1) an off-by-one error in the imapd annotate extension, (2) an off-by-one error in "cached header handling," (3) a stack-based buffer overflow in fetchnews, or (4) a stack-based buffer overflow in imapd.

 

 >>> Vendor: Cyrus 4 Products
IMAP
Imapd
SASL
Libsieve


Copyright 2024, cxsecurity.com

 

Back to Top