Cyrus IMAP before 3.4.2 allows remote attackers to cause a denial of service (multiple-minute daemon hang) via input that is mishandled during hash-table interaction. Because there are many insertions into a single bucket, strcmp becomes slow. This is fixed in 3.4.2, 3.2.8, and 3.0.16.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2021-09-01T05:32:49
Updated: 2024-08-03T23:50:43.083Z
Reserved: 2021-05-26T00:00:00
Link: CVE-2021-33582
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-09-01T06:15:06.387
Modified: 2023-11-07T03:35:52.930
Link: CVE-2021-33582
Redhat