CVE Database
/

CVE-2014-0079

Back to search

CVE-2014-0079

Published: Apr 28, 2014

Modified: Aug 6, 2024

PUBLISHED

Description

The ValidateUserLogon function in provider/libserver/ECSession.cpp in Zarafa 7.1.8, 6.20.0, and earlier, when using certain build conditions, allows remote attackers to cause a denial of service (crash) via vectors related to "a NULL pointer of the password."

VendorProductVersions

n/a

n/a

affected
n/a

References

MDVSA-2014:044
vendor-advisory
x_refsource_MANDRIVA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now