CVE Vulnerabilities

CVE-2005-2661

Published: Oct 14, 2005 | Modified: Mar 08, 2011
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Format string vulnerability in the ParseBannerAndCapability function in main.c for up-imapproxy 1.2.3 and 1.2.4 allows remote IMAP servers to execute arbitrary code via format string specifiers in a banner or capability line.

Affected Software

Name Vendor Start Version End Version
Up-imapproxy Up-imapproxy 1.2.3 (including) 1.2.3 (including)
Up-imapproxy Up-imapproxy 1.2.4 (including) 1.2.4 (including)
Up-imapproxy Ubuntu dapper *
Up-imapproxy Ubuntu devel *
Up-imapproxy Ubuntu edgy *
Up-imapproxy Ubuntu feisty *

References