First published: Tue Nov 14 2000(Updated: )
Buffer overflow in University of Washington c-client library (used by pine and other programs) allows remote attackers to execute arbitrary commands via a long X-Keywords header.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
University of Washington c-client | =4.7c | |
University of Washington PINE | =4.21 | |
University of Washington PINE | =4.20 | |
University of Washington c-client | =4.7b |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0847 is considered a critical vulnerability due to its potential for remote command execution.
To mitigate CVE-2000-0847, update the University of Washington c-client library and affected programs to versions that have addressed this vulnerability.
CVE-2000-0847 affects University of Washington's c-client library and the Pine email client versions 4.20, 4.21, and specific versions of IMAP.
CVE-2000-0847 enables remote attackers to execute arbitrary commands through a buffer overflow when a specially crafted X-Keywords header is sent.
CVE-2000-0847 was reported in the year 2000, during a time when buffer overflow vulnerabilities were commonly exploited.