PT-2004-1753 · Popclient · Popclient

Dean White

+1

·

Published

2004-07-13

·

Updated

2017-07-11

·

CVE-2004-0666

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions popclient version 3.0b6
Description The issue is caused by an off-by-one error in the POP3 readmsg function, allowing remote attackers to cause a denial of service, resulting in an application crash. This is achieved by sending an e-mail message with a specific line length, which leads to a buffer overflow.
Recommendations For popclient version 3.0b6, consider applying a patch or fix to address the off-by-one error in the POP3 readmsg function to prevent the buffer overflow and subsequent denial of service.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-0666

Affected Products

Popclient