Vulnerability Description
Cyrus 2.0.15, 2.0.16, and 1.6.24 on BSDi 4.2, with IMAP enabled, allows remote attackers to cause a denial of service (hang) using PHP IMAP clients.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Carnegie Mellon University | Cyrus Imap Server | 1.6.24 |
| Bsdi | Bsd Os | 4.2 |
References
- http://www.securityfocus.com/archive/1/211056Vendor Advisory
- http://www.securityfocus.com/bid/3260Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/7053
- http://www.securityfocus.com/archive/1/211056Vendor Advisory
- http://www.securityfocus.com/bid/3260Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/7053
FAQ
What is CVE-2001-1154?
CVE-2001-1154 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Cyrus 2.0.15, 2.0.16, and 1.6.24 on BSDi 4.2, with IMAP enabled, allows remote attackers to cause a denial of service (hang) using PHP IMAP clients.
How severe is CVE-2001-1154?
CVE-2001-1154 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2001-1154?
Check the references section above for vendor advisories and patch information. Affected products include: Carnegie Mellon University Cyrus Imap Server, Bsdi Bsd Os.