Back to search
CVE-2004-1067
Published: Dec 10, 2004
Modified: Aug 8, 2024
PUBLISHED
Description
Off-by-one error in the mysasl_canon_user function in Cyrus IMAP Server 2.2.9 and earlier leads to a buffer overflow, which may allow remote attackers to execute arbitrary code via the username.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
cyrus-mysaslcanonuser-offbyone-bo(18333)
vdb-entry
x_refsource_XF
http://asg.web.cmu.edu/cyrus/download/imapd/changes.html
x_refsource_CONFIRM
11738
vdb-entry
x_refsource_BID
USN-37-1
vendor-advisory
x_refsource_UBUNTU
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now