Search CVE reports


Toggle filters

1 result


CVE-2004-0884

Medium priority
Fixed

The (1) libsasl and (2) libsasl2 libraries in Cyrus-SASL 2.1.18 and earlier trust the SASL_PATH environment variable to find all available SASL plug-ins, which allows local users to execute arbitrary code by modifying the...

3 affected packages

cyrus-sasl2, cyrus-sasl2-heimdal, cyrus-sasl2-mit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cyrus-sasl2
cyrus-sasl2-heimdal
cyrus-sasl2-mit
Show less packages