PT-1998-1224 · Slackware · Imapd+1

Published

1998-02-02

·

Updated

2016-10-18

·

CVE-1999-1445

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Slackware versions 3.3 and 3.4
Description A issue in the imapd and ipop3d services allows remote attackers to cause a core dump by sending a short sequence of USER and PASS commands without providing valid usernames or passwords.
Recommendations For Slackware versions 3.3 and 3.4, consider disabling the imapd and ipop3d services until a fix is available to prevent remote attackers from causing a core dump.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-1999-1445

Affected Products

Imapd
Ipop3D