|
Multiple IMAP Client Integer Overflow Vulnerabilities
Multiple IMAP Clients have been reported vulnerable to unspecified integer-overflow vulnerabilities. The affected IMAP clients reportedly fail to ensure that proper boundary checks are performed on literal size values supplied by a malicious IMAP server. This may result in the manifestation of several variations of integer-overflow vulnerabilities when 'malloc()' tries to allocate memory. This BID is a multiple vendor alert. Each affected implementation will be given a separate BID with vendor-specific details when further analysis of these issues is complete; this BID will then be retired. |
|
|
Privacy Statement |