CVE-2002-1580
Published Jun 14, 2004
Last updated 7 years ago
Overview
- Description
- Integer overflow in imapparse.c for Cyrus IMAP server 1.4 and 2.1.10 allows remote attackers to execute arbitrary code via a large length value that facilitates a buffer overflow attack, a different vulnerability than CVE-2002-1347.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:carnegie_mellon_university:cyrus_imap_server:1.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "82B7EED3-88ED-4959-9B0D-4593F82B482C" }, { "criteria": "cpe:2.3:a:carnegie_mellon_university:cyrus_imap_server:1.5.19:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9651929E-7E3D-4967-B4EC-BC1D87386A5C" }, { "criteria": "cpe:2.3:a:carnegie_mellon_university:cyrus_imap_server:2.0.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B03A2FFF-D736-436F-AB01-952C90CC88A6" }, { "criteria": "cpe:2.3:a:carnegie_mellon_university:cyrus_imap_server:2.0.16:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "686E6850-2FFB-4A83-9BBB-9C4FB456294E" }, { "criteria": "cpe:2.3:a:carnegie_mellon_university:cyrus_imap_server:2.1.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EC21C9C1-C8A2-4879-A604-E1192438A847" }, { "criteria": "cpe:2.3:a:carnegie_mellon_university:cyrus_imap_server:2.1.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FDF89521-977F-425A-BC5B-9D6F2F778125" } ], "operator": "OR" } ] } ]