index_urlfetch of the file imap/index.c. The manipulation of the argument start_octet leads to numeric error.This vulnerability is traded as CVE-2015-8077. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.