Stack-based buffer overflow in the ir_fetch_seq function in balsa before 2.3.20 might allow remote IMAP servers to execute arbitrary code via a long response to a FETCH command.
Exploitability
AV:NAC:MAu:NImpact
C:PI:PA:P6.8/AV:N/AC:M/Au:N/C:P/I:P/A:P