CVE-2006-1721
EPSS 3.6%cyrus-sasl2 - programming error
Published: 4/11/2006Modified: 4/28/2026
Also known as:DEBIAN-CVE-2006-1721
Description
digestmd5.c in the CMU Cyrus Simple Authentication and Security Layer (SASL) library 2.1.18, and possibly other versions before 2.1.21, allows remote unauthenticated attackers to cause a denial of service (segmentation fault) via malformed inputs in DIGEST-MD5 negotiation.
Affected packages (2)
- Debian/cyrus-sasl2from 0, < 2.1.19.dfsg1-0.2
- Debian/cyrus-sasl2from 0, < 2.1.19-1.5sarge1