5
CVSSv2

CVE-2002-2338

Published: 31/12/2002 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The POP3 mail client in Mozilla 1.0 and previous versions, and Netscape Communicator 4.7 and previous versions, allows remote malicious users to cause a denial of service (no new mail) via a mail message containing a dot (.) at a newline, which is interpreted as the end of the message.

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla mozilla 0.9.2.1

mozilla mozilla 0.9.8

mozilla mozilla 1.0

netscape communicator 4.07

netscape communicator 4.4

netscape communicator 4.73

netscape communicator 4.75

netscape navigator 6.2

netscape navigator 6.2.2

mozilla mozilla 0.9.4

mozilla mozilla 0.9.4.1

mozilla mozilla 0.9.5

mozilla mozilla 0.9.6

netscape communicator 4.51

netscape communicator 4.6

netscape communicator 4.61

netscape communicator 4.7

netscape communicator 4.0

netscape communicator 4.06

netscape communicator 4.77

netscape navigator 6.0

netscape navigator 6.01

mozilla mozilla 0.9.2

mozilla mozilla 0.9.3

mozilla mozilla 0.9.7

mozilla mozilla 0.9.9

netscape communicator 4.08

netscape communicator 4.5

netscape communicator 4.72

netscape communicator 4.74

netscape communicator 4.76

netscape navigator 6.1

netscape navigator 6.2.1

Exploits

source: wwwsecurityfocuscom/bid/5002/info The Netscape Communicator and Mozilla browsers include support for email, and the ability to fetch mail through a POP3 server Both products are available for a range of platforms, including Microsoft Windows and Linux Under some circumstances, malformed email messages may prevent Netscape and M ...