IMAP 4.1 BETA, and possibly other versions, does not properly handle the SIGABRT (abort) signal, which allows local users to crash the server (imapd) via certain sequences of commands, which causes a core dump that may contain sensitive password information.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2001-09-12T04:00:00

Updated: 2024-08-01T17:02:53.863Z

Reserved: 2001-08-31T00:00:00

Link: CVE-1999-1224

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 1997-10-08T04:00:00.000

Modified: 2017-12-19T02:29:04.017

Link: CVE-1999-1224

cve-icon Redhat

No data.