First published: Thu Jan 03 2002(Updated: )
Vulnerability in RFC822 address parser in mutt before 1.2.5.1 and mutt 1.3.x before 1.3.25 allows remote attackers to execute arbitrary commands via an improperly terminated comment or phrase in the address list.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mutt | <=1.3.25 | |
Mutt | <=1.2.5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-0001 has a critical severity level due to its potential to allow remote command execution.
To fix CVE-2002-0001, you should update Mutt to version 1.2.5.1 or later for the 1.2.x series and version 1.3.25 or later for the 1.3.x series.
CVE-2002-0001 affects Mutt versions prior to 1.2.5.1 and 1.3.x versions before 1.3.25.
CVE-2002-0001 can be exploited by remote attackers who can send specially crafted emails to users of vulnerable Mutt versions.
CVE-2002-0001 is a command execution vulnerability that occurs due to improper handling of the RFC822 address parser.