← Back

CVE-2024-34055

nvd nist
Published: Jun 5, 2024Modified: Dec 6, 2024

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

Cyrus IMAP before 3.8.3 and 3.10.x before 3.10.0-rc1 allows authenticated attackers to cause unbounded memory allocation by sending many LITERALs in a single command.

Affected (4)

1 product
Cyrus Imap
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Cyrusimap
Before 3.8.3
Version 3.10.0 alpha0
Version 3.10.0 beta1
Version 3.10.0 beta2

Timeline

No history available yet.