Back to search
CVE-2006-1721
Published: Apr 11, 2006
Modified: Aug 7, 2024
PUBLISHED
Description
digestmd5.c in the CMU Cyrus Simple Authentication and Security Layer (SASL) library 2.1.18, and possibly other versions before 2.1.21, allows remote unauthenticated attackers to cause a denial of service (segmentation fault) via malformed inputs in DIGEST-MD5 negotiation.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
26708
third-party-advisory
x_refsource_SECUNIA
ADV-2008-1744
vdb-entry
x_refsource_VUPEN
19825
third-party-advisory
x_refsource_SECUNIA
19809
third-party-advisory
x_refsource_SECUNIA
19618
third-party-advisory
x_refsource_SECUNIA
19753
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:9861
vdb-entry
signature
x_refsource_OVAL
cyrus-sasl-digest-dos(25738)
vdb-entry
x_refsource_XF
http://support.avaya.com/elmodocs2/security/ASA-2007-426.htm
x_refsource_CONFIRM
http://labs.musecurity.com/advisories/MU-200604-01.txt
x_refsource_MISC
26857
third-party-advisory
x_refsource_SECUNIA
http://www.vmware.com/security/advisories/VMSA-2008-0009.html
x_refsource_CONFIRM
20060410 [MU-200604-01] Cyrus SASL DIGEST-MD5 Pre-Authentication Denial of Service
mailing-list
x_refsource_FULLDISC
22187
third-party-advisory
x_refsource_SECUNIA
MDKSA-2006:073
vendor-advisory
x_refsource_MANDRIVA
ADV-2006-3852
vdb-entry
x_refsource_VUPEN
27237
third-party-advisory
x_refsource_SECUNIA
RHSA-2007:0878
vendor-advisory
x_refsource_REDHAT
RHSA-2007:0795
vendor-advisory
x_refsource_REDHAT
20014
third-party-advisory
x_refsource_SECUNIA
APPLE-SA-2006-09-29
vendor-advisory
x_refsource_APPLE
30535
third-party-advisory
x_refsource_SECUNIA
17446
vdb-entry
x_refsource_BID
19964
third-party-advisory
x_refsource_SECUNIA
2006-0024
vendor-advisory
x_refsource_TRUSTIX
USN-272-1
vendor-advisory
x_refsource_UBUNTU
SUSE-SA:2006:025
vendor-advisory
x_refsource_SUSE
1016960
vdb-entry
x_refsource_SECTRACK
GLSA-200604-09
vendor-advisory
x_refsource_GENTOO
ADV-2006-1306
vdb-entry
x_refsource_VUPEN
DSA-1042
vendor-advisory
x_refsource_DEBIAN
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now