Back to Database
Status published
High
CVE-2000-0847
Buffer overflow in University of Washington c-client library (used by...
Vulnerability Description
Buffer overflow in University of Washington c-client library (used by pine and other programs) allows remote attackers to execute arbitrary commands via a long X-Keywords header.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2000-0847
Credits & Attribution
No credits recorded in the NVD database.
References
- http://archives.neohapsis.com/archives/bugtraq/2000-08/0437.html
- http://archives.neohapsis.com/archives/bugtraq/2000-08/0425.html
- http://www.securityfocus.com/bid/1646
- http://www.securityfocus.com/bid/1687
- http://archives.neohapsis.com/archives/freebsd/2000-09/0108.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5223
More from university of washington
View All →CVE-2008-5514
Off-by-one error in the rfc822_output_char function in the RFC822BUFFER routines...
Medium
4.3
CVE-2008-5006
smtp.c in the c-client library in University of Washington IMAP...
Medium
5
CVE-2008-5005
Multiple stack-based buffer overflows in (1) University of Washington IMAP...
Critical
10
CVE-2006-1394
Multiple cross-site scripting (XSS) vulnerabilities in the Microsoft IIS ISAPI...
Medium
4.3
CVE-2006-1393
Multiple cross-site scripting (XSS) vulnerabilities in the mod_pubcookie Apache application...
Medium
4.3
Affected Vendor
university of washington
View all reports →Affected Software
imap, pine
Vulnerable Versions:
4.7b, 4.7c, 4.20, 4.21
Timeline
Official Publish:
January 22nd, 2001
Last Modified:
August 8th, 2024
Added to House:
July 17th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.