Re: Buffer overflow in Cyrus IMAP ?

From: (no name) (no email)
Date: Sun Dec 08 2002 - 18:02:38 EST


> I don't see why it existing with literals after login would concern you if
> it didn't concern you before login.

In our configuration we were more concerned about post login. We have
done some more testing and it appears that this is a none issue in the
64 bit environment.

Thanks for your comments.

saira

>
> Of course, they are properly limited in 2.1.11 and 2.0.17.
>
> -Rob
>
> On Thu, 5 Dec 2002 wrote:
>
> > Hi,
> >
> > Regarding the recently announced vulnerability
> >
> > http://online.securityfocus.com/archive/1/301864/2002-11-29/2002-12-05/0
> >
> > Does a similar vulnerability exist with literals after login?
> >
> > Thank you.
> >
> > Saira Hasnain
> >
> >
>
> -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
> Rob Siemborski * Andrew Systems Group * Cyert Hall 207 * 412-268-7456
> Research Systems Programmer * /usr/contributed Gatekeeper
>








Hosted Email Solutions

Invaluement Anti-Spam DNSBLs



Powered By FreeBSD   Powered By FreeBSD