Search CVE reports


Toggle filters

1 – 9 of 9 results


CVE-2006-2502

Medium priority
Not affected

Stack-based buffer overflow in pop3d in Cyrus IMAPD (cyrus-imapd) 2.3.2, when the popsubfolders option is enabled, allows remote attackers to execute arbitrary code via a long USER command.

2 affected packages

cyrus-imapd-2.2, cyrus21-imapd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cyrus-imapd-2.2
cyrus21-imapd
Show less packages

CVE-2006-0459

Medium priority

Some fixes available 14 of 15

flex.skl in Will Estes and John Millaway Fast Lexical Analyzer Generator (flex) before 2.5.33 does not allocate enough memory for grammars containing (1) REJECT statements or (2) trailing context rules, which causes flex to...

8 affected packages

flex, cyrus21-imapd, flex-old, gcc-3.3, gcc-3.4...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
flex
cyrus21-imapd
flex-old
gcc-3.3
gcc-3.4
gob2
xine-extracodecs
xine-lib
Show all 8 packages Show less packages

CVE-2005-0546

Medium priority
Fixed

Multiple buffer overflows in Cyrus IMAPd before 2.2.11 may allow attackers to execute arbitrary code via (1) an off-by-one error in the imapd annotate extension, (2) an off-by-one error in “cached header handling,” (3)...

1 affected package

cyrus21-imapd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cyrus21-imapd
Show less packages

CVE-2004-1067

Medium priority
Fixed

Off-by-one error in the mysasl_canon_user function in Cyrus IMAP Server 2.2.9 and earlier leads to a buffer overflow, which may allow remote attackers to execute arbitrary code via the username.

1 affected package

cyrus21-imapd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cyrus21-imapd
Show less packages

CVE-2004-1015

Medium priority
Not affected

Buffer overflow in proxyd for Cyrus IMAP Server 2.2.9 and earlier, with the imapmagicplus option enabled, may allow remote attackers to execute arbitrary code, a different vulnerability than CVE-2004-1011.

1 affected package

cyrus21-imapd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cyrus21-imapd
Show less packages

CVE-2004-1014

Medium priority
Fixed

statd in nfs-utils 1.257 and earlier does not ignore the SIGPIPE signal, which allows remote attackers to cause a denial of service (server process crash) via a TCP connection that is prematurely terminated.

2 affected packages

cyrus21-imapd, nfs-utils

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cyrus21-imapd
nfs-utils
Show less packages

CVE-2004-1013

Medium priority
Fixed

The argument parser of the FETCH command in Cyrus IMAP Server 2.2.x through 2.2.8 allows remote authenticated users to execute arbitrary code via certain commands such as (1) “body[p”, (2) “binary[p”, or (3) “binary[p”) that cause...

1 affected package

cyrus21-imapd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cyrus21-imapd
Show less packages

CVE-2004-1012

Medium priority
Fixed

The argument parser of the PARTIAL command in Cyrus IMAP Server 2.2.6 and earlier allows remote authenticated users to execute arbitrary code via a certain command (“body[p”) that is treated as a different command (“body.peek”)...

1 affected package

cyrus21-imapd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cyrus21-imapd
Show less packages

CVE-2004-1011

Medium priority
Fixed

Stack-based buffer overflow in Cyrus IMAP Server 2.2.4 through 2.2.8, with the imapmagicplus option enabled, allows remote attackers to execute arbitrary code via a long (1) PROXY or (2) LOGIN command, a different vulnerability...

1 affected package

cyrus21-imapd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cyrus21-imapd
Show less packages