CVE-2026-61908
EUVD-2026-7513409.09.2026, 20:18
An issue was discovered in Cyrus IMAP before 3.12.4. A JMAP email-header blob ID can reference an out-of-bounds index. An authenticated user could attempt to download a crafted JMAP blob ID of the form H<emailid>-<index>, which could read past the end of the internal blob_headers array during download, exposing adjacent heap memory.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| cyrusimap | cyrus_imap | 𝑥 < 3.8.8 | CNA |
| cyrusimap | cyrus_imap | 3.9.0 ≤ 𝑥 < 3.10.4 | CNA |
| cyrusimap | cyrus_imap | 3.11.0 ≤ 𝑥 < 3.12.4 | CNA |
Common Weakness Enumeration