Cyrus 2.0.15, 2.0.16, and 1.6.24 on BSDi 4.2, with IMAP enabled, allows remote attackers to cause a denial of service (hang) using PHP IMAP clients.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Cyrus_imap_server | Carnegie_mellon_university | 1.6.24 (including) | 1.6.24 (including) |
Cyrus_imap_server | Carnegie_mellon_university | 2.0.15 (including) | 2.0.15 (including) |
Cyrus_imap_server | Carnegie_mellon_university | 2.0.16 (including) | 2.0.16 (including) |