CVE-2004-1067

Publication date

2004-12-10 10:00:00

Family

mitre

State

PUBLISHED

Description

Off-by-one error in the mysasl_canon_user function in Cyrus IMAP Server 2.2.9 and earlier leads to a buffer overflow, which may allow remote attackers to execute arbitrary code via the username.