CVE Database
/

CVE-2009-0688

Back to search

CVE-2009-0688

Published: May 15, 2009

Modified: Aug 7, 2024

PUBLISHED

Description

Multiple buffer overflows in the CMU Cyrus SASL library before 2.1.23 might allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via strings that are used as input to the sasl_encode64 function in lib/saslutil.c.

VendorProductVersions

n/a

n/a

affected
n/a

References

54515
vdb-entry
x_refsource_OSVDB
35239
third-party-advisory
x_refsource_SECUNIA
TA10-103B
third-party-advisory
x_refsource_CERT
35321
third-party-advisory
x_refsource_SECUNIA
VU#238019
third-party-advisory
x_refsource_CERT-VN
35497
third-party-advisory
x_refsource_SECUNIA
35102
third-party-advisory
x_refsource_SECUNIA
SSA:2009-134-01
vendor-advisory
x_refsource_SLACKWARE
35746
third-party-advisory
x_refsource_SECUNIA
39428
third-party-advisory
x_refsource_SECUNIA
1020755
vendor-advisory
x_refsource_SUNALERT
35094
third-party-advisory
x_refsource_SECUNIA
APPLE-SA-2010-03-29-1
vendor-advisory
x_refsource_APPLE
DSA-1807
vendor-advisory
x_refsource_DEBIAN
oval:org.mitre.oval:def:6136
vdb-entry
signature
x_refsource_OVAL
35097
third-party-advisory
x_refsource_SECUNIA
ADV-2009-1313
vdb-entry
x_refsource_VUPEN
ADV-2009-2012
vdb-entry
x_refsource_VUPEN
oval:org.mitre.oval:def:10687
vdb-entry
signature
x_refsource_OVAL
SUSE-SR:2009:011
vendor-advisory
x_refsource_SUSE
1021699
vendor-advisory
x_refsource_SUNALERT
GLSA-200907-09
vendor-advisory
x_refsource_GENTOO
264248
vendor-advisory
x_refsource_SUNALERT
35206
third-party-advisory
x_refsource_SECUNIA
259148
vendor-advisory
x_refsource_SUNALERT
MDVSA-2009:113
vendor-advisory
x_refsource_MANDRIVA
RHSA-2009:1116
vendor-advisory
x_refsource_REDHAT
34961
vdb-entry
x_refsource_BID
35416
third-party-advisory
x_refsource_SECUNIA
273910
vendor-advisory
x_refsource_SUNALERT
54514
vdb-entry
x_refsource_OSVDB
USN-790-1
vendor-advisory
x_refsource_UBUNTU
1022231
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now