CVE-2004-1067: Buffer Overflow
Published Dec 10, 2004
·Updated
Off-by-one error in the mysaslcanonuser function in Cyrus IMAP Server 2.2.9 and earlier leads to a buffer overflow, which may allow remote attackers to execute arbitrary code via the username.
Affected Software
22 affected components
Carnegie Mellon University Cyrus Imap Server=2.2.6
Carnegie Mellon University Cyrus Imap Server=2.1.10
Carnegie Mellon University Cyrus Imap Server=2.2.8
Carnegie Mellon University Cyrus Imap Server=2.2.9
Carnegie Mellon University Cyrus Imap Server=2.2.0_alpha
Carnegie Mellon University Cyrus Imap Server=2.0.16
Carnegie Mellon University Cyrus Imap Server=1.5.19
Carnegie Mellon University Cyrus Imap Server=2.1.9
Carnegie Mellon University Cyrus Imap Server=2.2.5
Carnegie Mellon University Cyrus Imap Server=2.2.2_beta
Carnegie Mellon University Cyrus Imap Server=1.4
Carnegie Mellon University Cyrus Imap Server=2.1.16
Carnegie Mellon University Cyrus Imap Server=2.2.7
Carnegie Mellon University Cyrus Imap Server=2.2.3
Carnegie Mellon University Cyrus Imap Server=2.2.1_beta
Carnegie Mellon University Cyrus Imap Server=2.1.7
Carnegie Mellon University Cyrus Imap Server=2.2.4
Carnegie Mellon University Cyrus Imap Server=2.0.12
redhat Fedora Core=core_2.0
Ubuntu Ubuntu Linux=4.1
redhat Fedora Core=core_3.0
Ubuntu Ubuntu Linux=4.1
Remediation
Patch Available
Event History
Dec 10, 2004
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1067?
CVE-2004-1067 is classified as a critical vulnerability due to the potential for remote code execution.
2
How do I fix CVE-2004-1067?
To fix CVE-2004-1067, upgrade to a patched version of the Cyrus IMAP Server that addresses the buffer overflow.
3
Which versions are affected by CVE-2004-1067?
CVE-2004-1067 affects Cyrus IMAP Server versions up to and including 2.2.9.
4
What type of vulnerability is CVE-2004-1067?
CVE-2004-1067 is an off-by-one error leading to a buffer overflow.
5
Can CVE-2004-1067 be exploited remotely?
Yes, CVE-2004-1067 can be exploited remotely through crafted username inputs.