Buffer overflow in digestmd5.c CVS release 1.170 (also referred to as digestmda5.c), as used in the DIGEST-MD5 SASL plugin for Cyrus-SASL but not in any official releases, allows remote attackers to execute arbitrary code.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Sasl | Cyrus | 1.5.24 (including) | 1.5.24 (including) |
Sasl | Cyrus | 1.5.27 (including) | 1.5.27 (including) |
Sasl | Cyrus | 1.5.28 (including) | 1.5.28 (including) |
Sasl | Cyrus | 2.1.9 (including) | 2.1.9 (including) |
Sasl | Cyrus | 2.1.10 (including) | 2.1.10 (including) |
Sasl | Cyrus | 2.1.11 (including) | 2.1.11 (including) |
Sasl | Cyrus | 2.1.12 (including) | 2.1.12 (including) |
Sasl | Cyrus | 2.1.13 (including) | 2.1.13 (including) |
Sasl | Cyrus | 2.1.14 (including) | 2.1.14 (including) |
Sasl | Cyrus | 2.1.15 (including) | 2.1.15 (including) |
Sasl | Cyrus | 2.1.16 (including) | 2.1.16 (including) |
Sasl | Cyrus | 2.1.17 (including) | 2.1.17 (including) |
Sasl | Cyrus | 2.1.18 (including) | 2.1.18 (including) |
Sasl | Cyrus | 2.1.18_r1 (including) | 2.1.18_r1 (including) |
Openpkg | Openpkg | 2.1 (including) | 2.1 (including) |
Openpkg | Openpkg | 2.2 (including) | 2.2 (including) |
Suse_cvsup | Suse | 16.1h_36.i586 (including) | 16.1h_36.i586 (including) |
Linux | Conectiva | 9.0 (including) | 9.0 (including) |
Linux | Conectiva | 10.0 (including) | 10.0 (including) |