First published: Fri May 03 2002(Updated: )
The Bat! 1.53d and 1.54beta, and possibly other versions, allows remote attackers to cause a denial of service (crash) via an attachment whose name includes an MS-DOS device name.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
RITLabs The Bat | =1.53d | |
RITLabs The Bat | =1.54d |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-0338 has a severity level that indicates it can lead to a denial of service due to a crash.
To fix CVE-2002-0338, upgrade to a version of The Bat! that is not affected, specifically version 1.54d or later.
CVE-2002-0338 affects The Bat! versions 1.53d and 1.54beta, among possibly others.
CVE-2002-0338 involves remote attackers causing a denial of service through specially crafted attachment names.
Yes, CVE-2002-0338 can be exploited remotely by sending an email with a malicious attachment.