CVE-2005-0546

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
02/05/2005
Last modified:
03/04/2025

Description

Multiple buffer overflows in Cyrus IMAPd before 2.2.11 may allow attackers to execute arbitrary code via (1) an off-by-one error in the imapd annotate extension, (2) an off-by-one error in "cached header handling," (3) a stack-based buffer overflow in fetchnews, or (4) a stack-based buffer overflow in imapd.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cyrus:imapd:2.0.17:*:*:*:*:*:*:*
cpe:2.3:a:cyrus:imapd:2.1.16:*:*:*:*:*:*:*
cpe:2.3:a:cyrus:imapd:2.1.17:*:*:*:*:*:*:*
cpe:2.3:a:cyrus:imapd:2.1.18:*:*:*:*:*:*:*
cpe:2.3:a:cyrus:imapd:2.2.10:*:*:*:*:*:*:*