Back to Database
Status published
High
CVE-2000-0909
Buffer overflow in the automatic mail checking component of Pine...
Vulnerability Description
Buffer overflow in the automatic mail checking component of Pine 4.21 and earlier allows remote attackers to execute arbitrary commands via a long From: header.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2000-0909
Credits & Attribution
No credits recorded in the NVD database.
References
- ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:59.pine.asc
- http://www.redhat.com/support/errata/RHSA-2000-102.html
- http://archives.neohapsis.com/archives/bugtraq/2000-10/0441.html
- http://www.securityfocus.com/bid/1709
- http://www.securityfocus.com/archive/1/84901
- http://www.linux-mandrake.com/en/security/MDKSA-2000-073.php3
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5283
More from university of washington
View All →CVE-2008-5514
Off-by-one error in the rfc822_output_char function in the RFC822BUFFER routines...
Medium
4.3
CVE-2008-5006
smtp.c in the c-client library in University of Washington IMAP...
Medium
5
CVE-2008-5005
Multiple stack-based buffer overflows in (1) University of Washington IMAP...
Critical
10
CVE-2006-1394
Multiple cross-site scripting (XSS) vulnerabilities in the Microsoft IIS ISAPI...
Medium
4.3
CVE-2006-1393
Multiple cross-site scripting (XSS) vulnerabilities in the mod_pubcookie Apache application...
Medium
4.3
Affected Vendor
university of washington
View all reports →Affected Software
pine
Vulnerable Versions:
4.0.4, 4.10, 4.21
Timeline
Official Publish:
January 22nd, 2001
Last Modified:
August 8th, 2024
Added to House:
July 17th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.