CVE-2005-0546

Publication date 2 May 2005

Last updated 24 July 2024


Ubuntu priority

Multiple buffer overflows in Cyrus IMAPd before 2.2.11 may allow attackers to execute arbitrary code via (1) an off-by-one error in the imapd annotate extension, (2) an off-by-one error in "cached header handling," (3) a stack-based buffer overflow in fetchnews, or (4) a stack-based buffer overflow in imapd.

Status

Package Ubuntu Release Status
cyrus21-imapd 7.04 feisty
Fixed 2.1.18-2ubuntu2
6.10 edgy
Fixed 2.1.18-2ubuntu2
6.06 LTS dapper
Fixed 2.1.18-2ubuntu2

References

Related Ubuntu Security Notices (USN)

    • USN-87-1
    • Cyrus IMAP server vulnerability
    • 28 February 2005

Other references