Redpacketsecurity CVE-2026-107161: Buffer Overflow in Cyrus SASL DIGEST-MD5 Plugin
Article Content
- •CVE-2026-107161 is a heap-based buffer overflow in Cyrus SASL's DIGEST-MD5 plugin.
- •Exploitation requires user interaction and a connection to a malicious server.
- •The vulnerability is rated Moderate due to the deprecated status of the affected mechanism.
A heap-based buffer overflow vulnerability, CVE-2026-107161, was discovered in the Cyrus SASL DIGEST-MD5 plugin. This flaw arises from the add_to_challenge() function not recalculating buffer sizes after quoting, leading to potential out-of-bounds writes. Attackers can exploit this by sending crafted challenge fields to clients, resulting in application crashes. The vulnerability affects systems using SASL-enabled applications or HTTP Digest clients, particularly those connecting to untrusted servers. Although exploitation is possible, it requires user interaction and is not automatic. The flaw is rated as Moderate due to the deprecated status of DIGEST-MD5 and the lack of demonstrated code execution. Red Hat has not yet released a patch, and users are advised to monitor for updates and consider disabling the DIGEST-MD5 mechanism where feasible.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Red Hat and CVE-2026-107161 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
What systems are affected?
Is there a patch available?
What should I do if I'm affected?
Continue Reading
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited In late September 2026, two critical zero-day vulnerabilities (CVE-2026-88771 and CVE-2026-88772) in Citrix NetScaler ADC and Gateway were actively exploited, allowing remote code execution. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on…
Critical Citrix NetScaler Vulnerabilities Actively Exploited in Finland The National Cyber Security Centre Finland (NCSC-FI) issued an alert regarding critical vulnerabilities in Citrix NetScaler ADC and Gateway products, specifically CVE-2026-88771 and CVE-2026-88772, which are being actively exploited in Finland. These vulnerabilities allow attackers to execute remote code without…