CVE-2014-0079
Publication date 28 April 2014
Last updated 24 July 2024
Ubuntu priority
Description
The ValidateUserLogon function in provider/libserver/ECSession.cpp in Zarafa 7.1.8, 6.20.0, and earlier, when using certain build conditions, allows remote attackers to cause a denial of service (crash) via vectors related to "a NULL pointer of the password."
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| zarafa | 14.04 LTS trusty | Not in release |