ALT-PU-2013-1239-1
Package cyrus-imapd updated to version 2.4.12-alt0.M51.1 for branch p5 in task 109884.
Closed vulnerabilities
Published: 2011-09-14
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2011-3208
Stack-based buffer overflow in the split_wildmats function in nntpd.c in nntpd in Cyrus IMAP Server before 2.3.17 and 2.4.x before 2.4.11 allows remote attackers to execute arbitrary code via a crafted NNTP command.
Severity: HIGH (7.5)
References:
- [cyrus-announce] 20110908 Cyrus 2.3.17 Released
- [cyrus-announce] 20110908 Cyrus 2.4.11 Released
- http://git.cyrusimap.org/cyrus-imapd/commit/?id=0f8f026699829b65733c3081657b24e2174f4f4d
- http://git.cyrusimap.org/cyrus-imapd/commit/?id=3244c18c928fa331f6927e2b8146abe90feafddd
- openSUSE-SU-2011:1036
- 45938
- 45975
- 46064
- 1026031
- DSA-2318
- MDVSA-2011:149
- 75307
- RHSA-2011:1317
- 49534
- https://bugzilla.redhat.com/show_bug.cgi?id=734926
- cyrus-splitwildmats-bo(69679)
- SUSE-SU-2011:1034
- [cyrus-announce] 20110908 Cyrus 2.3.17 Released
- SUSE-SU-2011:1034
- cyrus-splitwildmats-bo(69679)
- https://bugzilla.redhat.com/show_bug.cgi?id=734926
- 49534
- RHSA-2011:1317
- 75307
- MDVSA-2011:149
- DSA-2318
- 1026031
- 46064
- 45975
- 45938
- openSUSE-SU-2011:1036
- http://git.cyrusimap.org/cyrus-imapd/commit/?id=3244c18c928fa331f6927e2b8146abe90feafddd
- http://git.cyrusimap.org/cyrus-imapd/commit/?id=0f8f026699829b65733c3081657b24e2174f4f4d
- [cyrus-announce] 20110908 Cyrus 2.4.11 Released
Published: 2011-12-24
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2011-3372
imap/nntpd.c in the NNTP server (nntpd) for Cyrus IMAPd 2.4.x before 2.4.12 allows remote attackers to bypass authentication by sending an AUTHINFO USER command without sending an additional AUTHINFO PASS command.
Severity: HIGH (7.5)
References:
- http://cyrusimap.org/mediawiki/index.php/Latest_Updates
- http://git.cyrusimap.org/cyrus-imapd/commit/?id=77903669e04c9788460561dd0560b9c916519594
- 46093
- http://secunia.com/secunia_research/2011-68
- 1026363
- DSA-2318
- MDVSA-2011:149
- RHSA-2011:1508
- https://bugzilla.redhat.com/show_bug.cgi?id=740822
- http://cyrusimap.org/mediawiki/index.php/Latest_Updates
- https://bugzilla.redhat.com/show_bug.cgi?id=740822
- RHSA-2011:1508
- MDVSA-2011:149
- DSA-2318
- 1026363
- http://secunia.com/secunia_research/2011-68
- 46093
- http://git.cyrusimap.org/cyrus-imapd/commit/?id=77903669e04c9788460561dd0560b9c916519594
Closed bugs
поддержка авторизации в ldap