PT-2004-1753 · Popclient · Popclient
Dean White
+1
·
Published
2004-07-13
·
Updated
2017-07-11
·
CVE-2004-0666
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
popclient version 3.0b6
Description
The issue is caused by an off-by-one error in the POP3 readmsg function, allowing remote attackers to cause a denial of service, resulting in an application crash. This is achieved by sending an e-mail message with a specific line length, which leads to a buffer overflow.
Recommendations
For popclient version 3.0b6, consider applying a patch or fix to address the off-by-one error in the POP3 readmsg function to prevent the buffer overflow and subsequent denial of service.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Popclient