CVE Vulnerabilities

CVE-2005-0373

Published: Oct 07, 2004 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Buffer overflow in digestmd5.c CVS release 1.170 (also referred to as digestmda5.c), as used in the DIGEST-MD5 SASL plugin for Cyrus-SASL but not in any official releases, allows remote attackers to execute arbitrary code.

Affected Software

Name Vendor Start Version End Version
Sasl Cyrus 1.5.24 (including) 1.5.24 (including)
Sasl Cyrus 1.5.27 (including) 1.5.27 (including)
Sasl Cyrus 1.5.28 (including) 1.5.28 (including)
Sasl Cyrus 2.1.9 (including) 2.1.9 (including)
Sasl Cyrus 2.1.10 (including) 2.1.10 (including)
Sasl Cyrus 2.1.11 (including) 2.1.11 (including)
Sasl Cyrus 2.1.12 (including) 2.1.12 (including)
Sasl Cyrus 2.1.13 (including) 2.1.13 (including)
Sasl Cyrus 2.1.14 (including) 2.1.14 (including)
Sasl Cyrus 2.1.15 (including) 2.1.15 (including)
Sasl Cyrus 2.1.16 (including) 2.1.16 (including)
Sasl Cyrus 2.1.17 (including) 2.1.17 (including)
Sasl Cyrus 2.1.18 (including) 2.1.18 (including)
Sasl Cyrus 2.1.18_r1 (including) 2.1.18_r1 (including)
Openpkg Openpkg 2.1 (including) 2.1 (including)
Openpkg Openpkg 2.2 (including) 2.2 (including)
Suse_cvsup Suse 16.1h_36.i586 (including) 16.1h_36.i586 (including)
Linux Conectiva 9.0 (including) 9.0 (including)
Linux Conectiva 10.0 (including) 10.0 (including)

References