CVE-2004-1011: Buffer Overflow
Published Dec 1, 2004
·Updated
Stack-based buffer overflow in Cyrus IMAP Server 2.2.4 through 2.2.8, with the imapmagicplus option enabled, allows remote attackers to execute arbitrary code via a long (1) PROXY or (2) LOGIN command, a different vulnerability than CVE-2004-1015.
Affected Software
23 affected components
Carnegie Mellon University Cyrus Imap Server=2.1.7
Carnegie Mellon University Cyrus Imap Server=2.1.9
Carnegie Mellon University Cyrus Imap Server=2.1.10
Carnegie Mellon University Cyrus Imap Server=2.1.16
Carnegie Mellon University Cyrus Imap Server=2.2.0_alpha
Carnegie Mellon University Cyrus Imap Server=2.2.1_beta
Carnegie Mellon University Cyrus Imap Server=2.2.2_beta
Carnegie Mellon University Cyrus Imap Server=2.2.3
Carnegie Mellon University Cyrus Imap Server=2.2.4
Carnegie Mellon University Cyrus Imap Server=2.2.5
Carnegie Mellon University Cyrus Imap Server=2.2.6
Carnegie Mellon University Cyrus Imap Server=2.2.7
Carnegie Mellon University Cyrus Imap Server=2.2.8
Openpkg Openpkg=current
Conectiva Linux=9.0
Conectiva Linux=10.0
redhat Fedora Core=core_2.0
redhat Fedora Core=core_3.0
Trustix Secure Linux=2.0
Trustix Secure Linux=2.1
Trustix Secure Linux=2.2
Ubuntu Ubuntu Linux=4.1
Ubuntu Ubuntu Linux=4.1
Event History
Dec 1, 2004
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1011?
CVE-2004-1011 is classified as a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2004-1011?
To mitigate CVE-2004-1011, upgrade to Cyrus IMAP Server version 2.2.9 or later.
3
Which versions of Cyrus IMAP Server are affected by CVE-2004-1011?
CVE-2004-1011 affects Cyrus IMAP Server versions 2.2.4 through 2.2.8 when the imapmagicplus option is enabled.
4
Can CVE-2004-1011 allow unauthorized access?
Yes, CVE-2004-1011 can allow attackers to execute arbitrary code, potentially leading to unauthorized access.
5
What commands exploit the CVE-2004-1011 vulnerability?
The vulnerability can be exploited using long PROXY or LOGIN commands.