PT-2003-1509 · Qualcomm · Eudora
Timo Sirainen
·
Published
2003-05-15
·
Updated
2016-10-18
·
CVE-2003-0302
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions:
Eudora version 5.2.1
Description:
The issue allows remote malicious IMAP servers to cause a denial of service and possibly execute arbitrary code via certain large literal size values that cause either integer signedness errors or integer overflow errors.
Recommendations:
For version 5.2.1, consider updating to a newer version that addresses the issue, as the current version may be susceptible to denial of service and arbitrary code execution attacks from malicious IMAP servers. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Eudora