Back to Database
Status published
Medium
CVE-2001-1154
Cyrus 2.0.15, 2.0.16, and 1.6.24 on BSDi 4.2, with IMAP...
Vulnerability Description
Cyrus 2.0.15, 2.0.16, and 1.6.24 on BSDi 4.2, with IMAP enabled, allows remote attackers to cause a denial of service (hang) using PHP IMAP clients.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2001-1154
Credits & Attribution
No credits recorded in the NVD database.
References
More from carnegie mellon university
View All →CVE-2009-0688
Multiple buffer overflows in the CMU Cyrus SASL library before...
High
7.5
CVE-2006-0250
Format string vulnerability in the snmp_input function in snmptrapd in...
Medium
6.4
CVE-2004-1067
Off-by-one error in the mysasl_canon_user function in Cyrus IMAP Server...
Critical
10
CVE-2004-1015
Buffer overflow in proxyd for Cyrus IMAP Server 2.2.9 and...
Critical
10
CVE-2004-1013
The argument parser of the FETCH command in Cyrus IMAP...
Critical
10
Affected Vendor
carnegie mellon university
View all reports →Affected Software
cyrus imap server, bsd os
Vulnerable Versions:
1.6.24, 2.0.15, 2.0.16, 4.2
Timeline
Official Publish:
March 15th, 2002
Last Modified:
August 8th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.