CVE-2024-34055
CVSS Score
6.5
EPSS Score
0.0%
EPSS Percentile
0th
Cyrus IMAP before 3.8.3 and 3.10.x before 3.10.0-rc1 allows authenticated attackers to cause unbounded memory allocation by sending many LITERALs in a single command.
| Vendor | n/a |
| Product | n/a |
| Published | Jun 5, 2024 |
| Last Updated | Dec 6, 2024 |
Stay Ahead of the Next One
Get instant alerts for n/a n/a
Be the first to know when new medium vulnerabilities affecting n/a n/a are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
n/a / n/a
n/a
References
github.com: https://github.com/cyrusimap/cyrus-imapd/commit/ef9e4e8314d6a06f2269af0ccf606894cc3fe489 cyrusimap.org: https://www.cyrusimap.org/imap/download/release-notes/3.8/x/3.8.3.html cyrusimap.org: https://www.cyrusimap.org/dev/imap/download/release-notes/3.10/x/3.10.0-rc1.html lists.fedoraproject.org: https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CJZQAE3XC2GBCE5KSTWJ5A6QYANFWGFB/ lists.fedoraproject.org: https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/WVZHUZDU4MGTTZJRNACTMSKXLNMMRLJ6/