Vulnerability Details CVE-2002-2325
The c-client library in Internet Message Access Protocol (IMAP) dated before 2002 RC2, as used by Pine 4.20 through 4.44, allows remote attackers to cause a denial of service (client crash) via a MIME-encoded email with Content-Type header containing an empty boundary field.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.031
EPSS Ranking 86.1%
CVSS Severity
CVSS v2 Score 7.8
Products affected by CVE-2002-2325
-
cpe:2.3:a:university_of_washington:pine:4.20
-
cpe:2.3:a:university_of_washington:pine:4.21
-
cpe:2.3:a:university_of_washington:pine:4.30
-
cpe:2.3:a:university_of_washington:pine:4.33
-
cpe:2.3:a:university_of_washington:pine:4.44