VYPR

cyrus-imapd

by OpenSUSE

Source repositories

CVEs (2)

  • CVE-2025-23394CriMay 26, 2025
    risk 0.64cvss 9.8epss 0.00

    A UNIX Symbolic Link (Symlink) Following vulnerability in openSUSE Tumbleweed cyrus-imapd allows escalation from cyrus to root.This issue affects openSUSE Tumbleweed cyrus-imapd before 3.8.4-2.1.

  • CVE-2015-8078Dec 3, 2015
    risk 0.00cvss epss 0.03

    Integer overflow in the index_urlfetch function in imap/index.c in Cyrus IMAP 2.3.19, 2.4.18, and 2.5.6 allows remote attackers to have unspecified impact via vectors related to urlfetch range checks and the section_offset variable. NOTE: this vulnerability exists because of an…