CVE-2021-33582
01.09.2021, 06:15
Cyrus IMAP before 3.4.2 allows remote attackers to cause a denial of service (multiple-minute daemon hang) via input that is mishandled during hash-table interaction. Because there are many insertions into a single bucket, strcmp becomes slow. This is fixed in 3.4.2, 3.2.8, and 3.0.16.Enginsight
Vendor | Product | Version |
---|---|---|
cyrus | imap | 𝑥 < 3.0.16 |
cyrus | imap | 3.2.0 ≤ 𝑥 < 3.2.8 |
cyrus | imap | 3.4.0 ≤ 𝑥 < 3.4.2 |
debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
References