Unrated severityNVD Advisory· Published Jun 14, 2004· Updated Apr 16, 2026
CVE-2002-1580
CVE-2002-1580
Description
Integer overflow in imapparse.c for Cyrus IMAP server 1.4 and 2.1.10 allows remote attackers to execute arbitrary code via a large length value that facilitates a buffer overflow attack, a different vulnerability than CVE-2002-1347.
Affected products
6cpe:2.3:a:carnegie_mellon_university:cyrus_imap_server:1.4:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:carnegie_mellon_university:cyrus_imap_server:1.4:*:*:*:*:*:*:*
- cpe:2.3:a:carnegie_mellon_university:cyrus_imap_server:1.5.19:*:*:*:*:*:*:*
- cpe:2.3:a:carnegie_mellon_university:cyrus_imap_server:2.0.12:*:*:*:*:*:*:*
- cpe:2.3:a:carnegie_mellon_university:cyrus_imap_server:2.0.16:*:*:*:*:*:*:*
- cpe:2.3:a:carnegie_mellon_university:cyrus_imap_server:2.1.10:*:*:*:*:*:*:*
- cpe:2.3:a:carnegie_mellon_university:cyrus_imap_server:2.1.9:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- www.kb.cert.org/vuls/id/740169nvdPatchThird Party AdvisoryUS Government Resource
- www.securityfocus.com/archive/1/301864nvdExploitPatchVendor Advisory
- www.securityfocus.com/bid/6298nvdExploitPatchVendor Advisory
- distro.conectiva.com.br/atualizacoes/nvdVendor Advisory
- asg.web.cmu.edu/cyrus/download/imapd/changes.htmlnvd
- distro.conectiva.com/atualizacoes/nvd
- www.debian.org/security/2002/dsa-215nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/10744nvd
News mentions
0No linked articles in our index yet.