7.5
CVSSv2

CVE-2002-0001

Published: 27/02/2002 Updated: 18/10/2016
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Vulnerability in RFC822 address parser in mutt prior to 1.2.5.1 and mutt 1.3.x prior to 1.3.25 allows remote malicious users to execute arbitrary commands via an improperly terminated comment or phrase in the address list.

Vulnerable Product Search on Vulmon Subscribe to Product

mutt mutt

Vendor Advisories

Joost Pol found a buffer overflow in the address handling code of mutt (a popular mail user agent) Even though this is a one byte overflow this is exploitable This has been fixed upstream in version 1251 and 1325 The relevant patch has been added to version 125-5 of the Debian package ...