CVE-2011-3372
Publication date 24 December 2011
Last updated 24 July 2024
Ubuntu priority
Description
imap/nntpd.c in the NNTP server (nntpd) for Cyrus IMAPd 2.4.x before 2.4.12 allows remote attackers to bypass authentication by sending an AUTHINFO USER command without sending an additional AUTHINFO PASS command.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| cyrus-imapd-2.2 | ||
| cyrus-imapd-2.4 | ||
| kolab-cyrus-imapd | ||
Patch details
| Package | Patch details |
|---|---|
| cyrus-imapd-2.2 |