PT-2005-1208 · Xemacs+2 · Xemacs+2
Max Vozeler
·
Published
2005-02-07
·
Updated
2018-10-19
·
CVE-2005-0100
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Emacs versions 20.x through 21.3
XEmacs versions prior to 21.4
Description
The issue is related to a format string vulnerability in the movemail utility. This vulnerability allows remote malicious POP3 servers to execute arbitrary code via crafted packets.
Recommendations
For Emacs versions 20.x through 21.3, update to a version later than 21.3 to resolve the issue.
For XEmacs versions prior to 21.4, update to version 21.4 or later to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Emacs
Red Hat
Xemacs