Cyrus IMAPD is reported prone to multiple remote unspecified buffer overflow vulnerabilities. The following issues are reported: It is reported that the first issue exists in the 'IMAPMAGICPLUS' functionality provided by Cyrus IMAPD. This vulnerability exists prior to authentication, and is therefore reportedly exploitable by anonymous remote attackers. Additionally a buffer overflow vulnerability is reported to exist in the 'mysasl_canon_user' Cyrus IMAPD function. These vulnerabilities reportedly may allow remote, attacker-supplied machine code to be executed in the context of the affected server process.
Cyrus IMAPD is reported prone to multiple remote unspecified buffer overflow vulnerabilities. The following issues are reported: It is reported that the first issue exists in the 'IMAPMAGICPLUS' functionality provided by Cyrus IMAPD. This vulnerability exists prior to authentication, and is therefore reportedly exploitable by anonymous remote attackers. Additionally a buffer overflow vulnerability is reported to exist in the 'mysasl_canon_user' Cyrus IMAPD function. These vulnerabilities reportedly may allow remote, attacker-supplied machine code to be executed in the context of the affected server process.