Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2019-11356

Опубликовано: 03 июн. 2019
Источник: ubuntu
Приоритет: medium
CVSS2: 7.5
CVSS3: 9.8

Описание

The CalDAV feature in httpd in Cyrus IMAP 2.5.x through 2.5.12 and 3.0.x through 3.0.9 allows remote attackers to execute arbitrary code via a crafted HTTP PUT operation for an event with a long iCalendar property name.

РелизСтатусПримечание
bionic

released

2.5.10-3ubuntu1.1
cosmic

ignored

end of life
devel

released

3.0.8-6
disco

ignored

end of life
eoan

released

3.0.8-6
esm-apps/bionic

released

2.5.10-3ubuntu1.1
esm-apps/focal

released

3.0.8-6
esm-infra-legacy/trusty

DNE

focal

released

3.0.8-6
groovy

released

3.0.8-6

Показывать по

7.5 High

CVSS2

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 5.6
redhat
больше 6 лет назад

The CalDAV feature in httpd in Cyrus IMAP 2.5.x through 2.5.12 and 3.0.x through 3.0.9 allows remote attackers to execute arbitrary code via a crafted HTTP PUT operation for an event with a long iCalendar property name.

CVSS3: 9.8
nvd
больше 6 лет назад

The CalDAV feature in httpd in Cyrus IMAP 2.5.x through 2.5.12 and 3.0.x through 3.0.9 allows remote attackers to execute arbitrary code via a crafted HTTP PUT operation for an event with a long iCalendar property name.

CVSS3: 9.8
debian
больше 6 лет назад

The CalDAV feature in httpd in Cyrus IMAP 2.5.x through 2.5.12 and 3.0 ...

CVSS3: 9.8
github
больше 3 лет назад

The CalDAV feature in httpd in Cyrus IMAP 2.5.x through 2.5.12 and 3.0.x through 3.0.9 allows remote attackers to execute arbitrary code via a crafted HTTP PUT operation for an event with a long iCalendar property name.

oracle-oval
больше 6 лет назад

ELSA-2019-1771: cyrus-imapd security update (IMPORTANT)

7.5 High

CVSS2

9.8 Critical

CVSS3