First published: Thu Aug 30 2001(Updated: )
Cyrus 2.0.15, 2.0.16, and 1.6.24 on BSDi 4.2, with IMAP enabled, allows remote attackers to cause a denial of service (hang) using PHP IMAP clients.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cyrus IMAP | =1.6.24 | |
Cyrus IMAP | =2.0.15 | |
Cyrus IMAP | =2.0.16 | |
bsdi bsd os | =4.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-1154 is classified as a denial of service vulnerability that can disrupt the availability of the Cyrus IMAP server.
To mitigate CVE-2001-1154, upgrade to a later version of Cyrus IMAP server that addresses this vulnerability.
CVE-2001-1154 affects versions 1.6.24, 2.0.15, and 2.0.16 of the Cyrus IMAP server.
Yes, CVE-2001-1154 specifically affects the Cyrus IMAP server running on BSDi 4.2.
Yes, CVE-2001-1154 can be exploited remotely using PHP IMAP clients to cause the server to hang.