Carnegie Mellon University Cyrus SASL 2.1.22

CPE Details

Carnegie Mellon University Cyrus SASL 2.1.22
2.1.22
2011-07-05
23h44 +00:00
2011-07-05
23h44 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:cmu:cyrus-sasl:2.1.22:*:*:*:*:*:*:*

Informations

Vendor

cmu

Product

cyrus-sasl

Version

2.1.22

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2013-4122 2013-10-26 22h00 +00:00 Cyrus SASL 2.1.23, 2.1.26, and earlier does not properly handle when a NULL value is returned upon an error by the crypt function as implemented in glibc 2.17 and later, which allows remote attackers to cause a denial of service (thread crash and consumption) via (1) an invalid salt or, when FIPS-140 is enabled, a (2) DES or (3) MD5 encrypted password, which triggers a NULL pointer dereference.
4.3