Vulnerability Description
Stack-based buffer overflow in Cyrus IMAP Server 2.2.4 through 2.2.8, with the imapmagicplus option enabled, allows remote attackers to execute arbitrary code via a long (1) PROXY or (2) LOGIN command, a different vulnerability than CVE-2004-1015.
Affected Platforms (CPE)
📦
Cyrus Imap Server
= 2.1.7📦
Cyrus Imap Server
= 2.1.9📦
Cyrus Imap Server
= 2.1.10📦
Cyrus Imap Server
= 2.1.16📦
Cyrus Imap Server
= 2.2.0_alpha📦
Cyrus Imap Server
= 2.2.1_beta📦
Cyrus Imap Server
= 2.2.2_beta📦
Cyrus Imap Server
= 2.2.3📦
Cyrus Imap Server
= 2.2.4📦
Cyrus Imap Server
= 2.2.5📦
Cyrus Imap Server
= 2.2.6📦
Cyrus Imap Server
= 2.2.7📦
Cyrus Imap Server
= 2.2.8