CyberSec.Space Logo
Back to CVE Browser

CVE-2004-1011

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.1780%
EPSS Percentile2.59th
PublishedJan 10, 2005
Last ModifiedApr 16, 2026

Vulnerability Description

Stack-based buffer overflow in Cyrus IMAP Server 2.2.4 through 2.2.8, with the imapmagicplus option enabled, allows remote attackers to execute arbitrary code via a long (1) PROXY or (2) LOGIN command, a different vulnerability than CVE-2004-1015.

Affected Platforms (CPE)

πŸ“¦
Carnegie Mellon University

Cyrus Imap Server

= 2.1.7
πŸ“¦
Carnegie Mellon University

Cyrus Imap Server

= 2.1.9
πŸ“¦
Carnegie Mellon University

Cyrus Imap Server

= 2.1.10
πŸ“¦
Carnegie Mellon University

Cyrus Imap Server

= 2.1.16
πŸ“¦
Carnegie Mellon University

Cyrus Imap Server

= 2.2.0_alpha
πŸ“¦
Carnegie Mellon University

Cyrus Imap Server

= 2.2.1_beta
πŸ“¦
Carnegie Mellon University

Cyrus Imap Server

= 2.2.2_beta
πŸ“¦
Carnegie Mellon University

Cyrus Imap Server

= 2.2.3
πŸ“¦
Carnegie Mellon University

Cyrus Imap Server

= 2.2.4
πŸ“¦
Carnegie Mellon University

Cyrus Imap Server

= 2.2.5
πŸ“¦
Carnegie Mellon University

Cyrus Imap Server

= 2.2.6
πŸ“¦
Carnegie Mellon University

Cyrus Imap Server

= 2.2.7
πŸ“¦
Carnegie Mellon University

Cyrus Imap Server

= 2.2.8
πŸ“¦
Openpkg

Openpkg

= current
πŸ’»
Conectiva

Linux

= 9.0
πŸ’»
Conectiva

Linux

= 10.0
πŸ’»
Redhat

Fedora Core

= core_2.0
πŸ’»
Redhat

Fedora Core

= core_3.0
πŸ’»
Trustix

Secure Linux

= 2.0
πŸ’»
Trustix

Secure Linux

= 2.1
πŸ’»
Trustix

Secure Linux

= 2.2
πŸ’»
Ubuntu

Ubuntu Linux

= 4.1
πŸ’»
Ubuntu

Ubuntu Linux

= 4.1

References & Advisories

Related Vulnerabilities