PT-2003-1509 · Qualcomm · Eudora

Timo Sirainen

·

Published

2003-05-15

·

Updated

2016-10-18

·

CVE-2003-0302

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions: Eudora version 5.2.1
Description: The issue allows remote malicious IMAP servers to cause a denial of service and possibly execute arbitrary code via certain large literal size values that cause either integer signedness errors or integer overflow errors.
Recommendations: For version 5.2.1, consider updating to a newer version that addresses the issue, as the current version may be susceptible to denial of service and arbitrary code execution attacks from malicious IMAP servers. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2003-0302

Affected Products

Eudora