← Back

CVE-2011-3481

nvd nist
Published: Sep 14, 2011Modified: Apr 29, 2026

JSON object

Loading...
4.3
Vector
AV:N/AC:M/Au:N/C:N/I:N/A:P
Exploitability: 8.6 / Impact: 2.9
Source: NVD

Description

The index_get_ids function in index.c in imapd in Cyrus IMAP Server before 2.4.11, when server-side threading is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted References header in an e-mail message.

Affected (40)

1 product
Cyrus Imap Server
Configuration A
40 vulnerable
Vulnerable SoftwareAffected Versions
Cmu
Up to 2.4.10
Version 2.0.17
Version 2.1.16
Version 2.1.17
Version 2.1.18
Version 2.2.10
Version 2.2.11
Version 2.2.12
Version 2.2.13
Version 2.2.13p1
Version 2.2.8
Version 2.2.9
Version 2.3.0
Version 2.3.10
Version 2.3.11
Version 2.3.12
Version 2.3.13
Version 2.3.14
Version 2.3.15
Version 2.3.16
Version 2.3.17
Version 2.3.1
Version 2.3.2
Version 2.3.3
Version 2.3.4
Version 2.3.5
Version 2.3.6
Version 2.3.7
Version 2.3.8
Version 2.3.9
Version 2.4.0
Version 2.4.1
Version 2.4.2
Version 2.4.3
Version 2.4.4
Version 2.4.5
Version 2.4.6
Version 2.4.7
Version 2.4.8
Version 2.4.9

Timeline

No history available yet.