FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

courier-imap -- format string vulnerability in debug mode

Affected packages
courier-imap < 3.0.7,1

Details

VuXML ID 616cf823-f48b-11d8-9837-000c41e2cdad
Discovery 2004-08-18
Entry 2004-08-22
Modified 2013-06-19

An iDEFENSE security advisory describes a format string vulnerability that could be exploited when Courier-IMAP is run in debug mode (DEBUG_LOGIN set).

References

Bugtraq ID 10976
CVE Name CVE-2004-0777
Message http://lists.netsys.com/pipermail/full-disclosure/2004-August/025478.html
URL http://www.idefense.com/application/poi/display?id=131&type=vulnerabilities&flashstatus=false