First published: Tue Apr 11 2006(Updated: )
digestmd5.c in the CMU Cyrus Simple Authentication and Security Layer (SASL) library 2.1.18, and possibly other versions before 2.1.21, allows remote unauthenticated attackers to cause a denial of service (segmentation fault) via malformed inputs in DIGEST-MD5 negotiation.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cyrus SASL | =2.1.18_r1 | |
Cyrus SASL | =2.1.19 | |
Cyrus SASL | =2.1.18 | |
Cyrus SASL | =2.1.18_r2 | |
Cyrus SASL | =2.1.20 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.