digestmd5.c in the CMU Cyrus Simple Authentication and Security Layer (SASL) library 2.1.18, and possibly other versions before 2.1.21, allows remote unauthenticated attackers to cause a denial of service (segmentation fault) via malformed inputs in DIGEST-MD5 negotiation.
Get an AI-powered plain-language explanation of this vulnerability and remediation steps.
Login to generate AI explanation68 reference(s) from NVD