CVE-2002-1320: Medium severity university of washington pine vulnerability
Pine 4.44 and earlier allows remote attackers to cause a denial of service (core dump and failed restart) via an email message with a From header that contains a large number of quotation marks (").
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the impact of CVE-2002-1320?
CVE-2002-1320 allows remote attackers to trigger a denial of service, causing Pine to core dump and fail to restart.
Which versions of Pine are affected by CVE-2002-1320?
CVE-2002-1320 affects Pine versions 4.44 and earlier, including 4.0.2, 4.10, 4.21, 4.30, 4.33, 4.20, and 3.98.
How can I fix CVE-2002-1320?
To address CVE-2002-1320, upgrade Pine to a version later than 4.44 that contains the relevant security patches.
Is CVE-2002-1320 a critical vulnerability?
While CVE-2002-1320 can cause a denial of service, its severity level should be evaluated according to the specific environment and usage of Pine.
What techniques are used to exploit CVE-2002-1320?
CVE-2002-1320 can be exploited by sending an email with a From header that contains an excessive number of quotation marks.