vulnerability
FreeBSD: VID-14908BDA-232B-11EF-B621-00155D645102 (CVE-2024-34055): cyrus-imapd -- unbounded memory allocation
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
7 | (AV:N/AC:L/Au:S/C:N/I:N/A:C) | Apr 30, 2024 | Jun 6, 2024 | Jan 28, 2025 |
Severity
7
CVSS
(AV:N/AC:L/Au:S/C:N/I:N/A:C)
Published
Apr 30, 2024
Added
Jun 6, 2024
Modified
Jan 28, 2025
Description
Cyrus IMAP before 3.8.3 and 3.10.x before 3.10.0-rc1 allows authenticated attackers to cause unbounded memory allocation by sending many LITERALs in a single command.
Solution(s)
freebsd-upgrade-package-cyrus-imapd25freebsd-upgrade-package-cyrus-imapd30freebsd-upgrade-package-cyrus-imapd32freebsd-upgrade-package-cyrus-imapd34freebsd-upgrade-package-cyrus-imapd36freebsd-upgrade-package-cyrus-imapd38
References

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.