Cyrus IMAP Cyrus SASL 2.1.27

CPE Details

Cyrus IMAP Cyrus SASL 2.1.27
2.1.27
2020-01-03
16h26 +00:00
2020-01-03
16h26 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:cyrusimap:cyrus-sasl:2.1.27:*:*:*:*:*:*:*

Informations

Vendor

cyrusimap

Product

cyrus-sasl

Version

2.1.27

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2022-24407 2022-02-22 23h00 +00:00 In Cyrus SASL 2.1.17 through 2.1.27 before 2.1.28, plugins/sql.c does not escape the password for a SQL INSERT or UPDATE statement.
8.8
High
CVE-2019-19906 2019-12-19 16h39 +00:00 cyrus-sasl (aka Cyrus SASL) 2.1.27 has an out-of-bounds write leading to unauthenticated remote denial-of-service in OpenLDAP via a malformed LDAP packet. The OpenLDAP crash is ultimately caused by an off-by-one error in _sasl_add_string in common.c in cyrus-sasl.
7.5
High