5

CVE-2002-2338

Exploit
The POP3 mail client in Mozilla 1.0 and earlier, and Netscape Communicator 4.7 and earlier, allows remote attackers to cause a denial of service (no new mail) via a mail message containing a dot (.) at a newline, which is interpreted as the end of the message.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Mozilla ≫ Mozilla Version 0.9.2
Mozilla ≫ Mozilla Version 0.9.2.1
Mozilla ≫ Mozilla Version 0.9.3
Mozilla ≫ Mozilla Version 0.9.4
Mozilla ≫ Mozilla Version 0.9.4.1
Mozilla ≫ Mozilla Version 0.9.5
Mozilla ≫ Mozilla Version 0.9.6
Mozilla ≫ Mozilla Version 0.9.7
Mozilla ≫ Mozilla Version 0.9.8
Mozilla ≫ Mozilla Version 0.9.9
Mozilla ≫ Mozilla Version 1.0
Mozilla ≫ Mozilla Version 1.0 Update rc1
Mozilla ≫ Mozilla Version 1.0 Update rc2
Netscape ≫ Communicator Version 4.0
Netscape ≫ Communicator Version 4.4
Netscape ≫ Communicator Version 4.5
Netscape ≫ Communicator Version 4.06
Netscape ≫ Communicator Version 4.6
Netscape ≫ Communicator Version 4.07
Netscape ≫ Communicator Version 4.7
Netscape ≫ Communicator Version 4.08
Netscape ≫ Communicator Version 4.51
Netscape ≫ Communicator Version 4.61
Netscape ≫ Communicator Version 4.72
Netscape ≫ Communicator Version 4.73
Netscape ≫ Communicator Version 4.74
Netscape ≫ Communicator Version 4.75
Netscape ≫ Communicator Version 4.76
Netscape ≫ Communicator Version 4.77
Netscape ≫ Navigator Version 6.0
Netscape ≫ Navigator Version 6.0 Edition mac
Netscape ≫ Navigator Version 6.01
Netscape ≫ Navigator Version 6.1
Netscape ≫ Navigator Version 6.2
Netscape ≫ Navigator Version 6.2.1
Netscape ≫ Navigator Version 6.2.2
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 3.88% 0.889
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

http://www.mandrakesoft.com/security/advisories?name=MDKSA-2002:074
http://bugzilla.mozilla.org/show_bug.cgi?id=144228
http://mozilla.org/releases/mozilla1.0.1/security-fixes-1.0.1.html
http://online.securityfocus.com/archive/1/276628
http://www.iss.net/security_center/static/9343.php
http://www.securityfocus.com/archive/1/276946
http://www.securityfocus.com/bid/5002
Patch
Exploit