Stack-based buffer overflow in IMAPD in Mercury/32 4.52 allows remote authenticated users to execute arbitrary code via a long argument in a SEARCH ON command. NOTE: this issue might overlap with CVE-2004-1211.
https://www.exploit-db.com/exploits/4429
http://www.vupen.com/english/advisories/2007/3224
http://www.securitytracker.com/id?1018714