Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Integer overflow in imapparse.c for Cyrus IMAP server 1.4 and 2.1.10 allows remote attackers to execute arbitrary code via a large length value that facilitates a buffer overflow attack, a different vulnerability than CVE-2002-1347.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cyrus IMAPD Pre-Login堆破坏漏洞
Vulnerability Description
Cyrus IMAPD是一款免费开放源代码IMAP协议实现,可使用在Unix和Linux操作系统下。 Cyrus IMAPD不充分处理登录超长字符串,远程攻击者可以利用这个漏洞对守护程序进行缓冲区溢出攻击,可能以IMAPD进程权限在系统上执行任意指令。 攻击者连接IMAPD守护程序,在连接协商阶段发送超长登录字符串,可导致发生基于堆的缓冲区溢出,精心构建提交的字符串可以覆盖内存任意地址而以IMAPD进程权限在系统上执行任意指令。
CVSS Information
N/A
Vulnerability Type
N/A