IMAP 4.1 BETA, and possibly other versions, does not properly handle the SIGABRT (abort) signal, which allows local users to crash the server (imapd) via certain sequences of commands, which causes a core dump that may contain sensitive password information.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 1997-10-08 04:00
Updated : 2024-02-04 16:31
NVD link : CVE-1999-1224
Mitre link : CVE-1999-1224
CVE.ORG link : CVE-1999-1224
JSON object : View
Products Affected
university_of_washington
- imapd
CWE