Skip to content
CVE-2026-107161: Buffer Overflow in Cyrus SASL DIGEST-MD5 Plugin

CVE-2026-107161: Buffer Overflow in Cyrus SASL DIGEST-MD5 Plugin

First seen 8 Oct 2026, 02:29 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •October 8, 2026 at 03:31 UTC
  • •CVE-2026-107161 is a heap-based buffer overflow in Cyrus SASL's DIGEST-MD5 plugin.
  • •Exploitation requires user interaction and a connection to a malicious server.
  • •The vulnerability is rated Moderate due to the deprecated status of the affected mechanism.

A heap-based buffer overflow vulnerability, CVE-2026-107161, was discovered in the Cyrus SASL DIGEST-MD5 plugin. This flaw arises from the add_to_challenge() function not recalculating buffer sizes after quoting, leading to potential out-of-bounds writes. Attackers can exploit this by sending crafted challenge fields to clients, resulting in application crashes. The vulnerability affects systems using SASL-enabled applications or HTTP Digest clients, particularly those connecting to untrusted servers. Although exploitation is possible, it requires user interaction and is not automatic. The flaw is rated as Moderate due to the deprecated status of DIGEST-MD5 and the lack of demonstrated code execution. Red Hat has not yet released a patch, and users are advised to monitor for updates and consider disabling the DIGEST-MD5 mechanism where feasible.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-10-07
CVE-2026-107161 published
The vulnerability was disclosed, highlighting a buffer overflow issue in the DIGEST-MD5 plugin of Cyrus SASL.
Redpacketsecurity
2026-10-08
Red Hat advisory published
Red Hat confirmed the vulnerability and its implications, noting the absence of a patch and the need for user interaction for exploitation.
access.redhat.com

More articles in this cluster (2)

Following this threat?

Track Red Hat and CVE-2026-107161 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed

Common questions

What systems are affected?
Systems using SASL-enabled applications or HTTP Digest clients, especially those connecting to untrusted servers.
Is there a patch available?
No, Red Hat has not yet released a patch for this vulnerability.
What should I do if I'm affected?
Consider disabling the DIGEST-MD5 mechanism and monitor for updates from Red Hat.