Vulnerabilities > Carnegie Mellon University > Cyrus Sasl > 2.1.11

DATE CVE VULNERABILITY TITLE RISK
2009-05-15 CVE-2009-0688 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Carnegie Mellon University Cyrus-Sasl
Multiple buffer overflows in the CMU Cyrus SASL library before 2.1.23 might allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via strings that are used as input to the sasl_encode64 function in lib/saslutil.c.
network
low complexity
carnegie-mellon-university CWE-119
7.5