Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2011-3372

Опубликовано: 24 дек. 2011
Источник: debian

Описание

imap/nntpd.c in the NNTP server (nntpd) for Cyrus IMAPd 2.4.x before 2.4.12 allows remote attackers to bypass authentication by sending an AUTHINFO USER command without sending an additional AUTHINFO PASS command.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
cyrus-imapd-2.2fixed2.4.11-1package
cyrus-imapd-2.4fixed2.4.11-1package
kolab-cyrus-imapdremovedpackage
kolab-cyrus-imapdend-of-lifesqueezepackage

Связанные уязвимости

ubuntu
больше 13 лет назад

imap/nntpd.c in the NNTP server (nntpd) for Cyrus IMAPd 2.4.x before 2.4.12 allows remote attackers to bypass authentication by sending an AUTHINFO USER command without sending an additional AUTHINFO PASS command.

redhat
почти 14 лет назад

imap/nntpd.c in the NNTP server (nntpd) for Cyrus IMAPd 2.4.x before 2.4.12 allows remote attackers to bypass authentication by sending an AUTHINFO USER command without sending an additional AUTHINFO PASS command.

nvd
больше 13 лет назад

imap/nntpd.c in the NNTP server (nntpd) for Cyrus IMAPd 2.4.x before 2.4.12 allows remote attackers to bypass authentication by sending an AUTHINFO USER command without sending an additional AUTHINFO PASS command.

github
больше 3 лет назад

imap/nntpd.c in the NNTP server (nntpd) for Cyrus IMAPd 2.4.x before 2.4.12 allows remote attackers to bypass authentication by sending an AUTHINFO USER command without sending an additional AUTHINFO PASS command.

oracle-oval
больше 13 лет назад

ELSA-2011-1508: cyrus-imapd security update (MODERATE)