Cyrus IMAP Server < 2.2.10 Multiple Remote Overflows

high Nessus Plugin ID 15819

Synopsis

The remote IMAP server has multiple buffer overflow vulnerabilities.

Description

According to its banner, the remote Cyrus IMAPD server is vulnerable to one pre-authentication buffer overflow, as well as three post- authentication buffer overflows. A remote attacker could exploit these issues to crash the server, or possibly execute arbitrary code.

Solution

Upgrade to Cyrus IMAPD 2.2.10 or later.

Plugin Details

Severity: High

ID: 15819

File Name: cyrus_imap_multiple_overflow.nasl

Version: 1.25

Type: remote

Published: 11/23/2004

Updated: 4/11/2022

Configuration: Enable paranoid mode, Enable thorough checks

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 6.7

CVSS v2

Risk Factor: High

Base Score: 7.5

Temporal Score: 5.5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Information

CPE: cpe:/a:cmu:cyrus_imap_server

Required KB Items: Settings/ParanoidReport

Exploit Ease: No known exploits are available

Vulnerability Publication Date: 11/22/2004

Reference Information

CVE: CVE-2004-1011, CVE-2004-1012, CVE-2004-1013, CVE-2004-1015, CVE-2004-1067

BID: 11729, 11738