Get the LinuxSecurity news you want faster with RSS
Powered By
Debian: Cyrus IMAP arbitrary code execution fix
Posted by LinuxSecurity.com Team
Stefan Esser discovered several security related problems in the Cyrus IMAP daemon. Due to a bug in the command parser it is possible to access memory beyond the allocated buffer in two places which could lead to the execution of arbitrary code.