« Volver al listado

CVE-2002-1320

Estado: ModificadaMedia (5)—

Pine 4.44 and earlier allows remote attackers to cause a denial of service (core dump and failed restart) via an email message with a From header that contains a large number of quotation marks (").

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2002-1320",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 5,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "authentication": "NONE",
          "integrityImpact": "NONE",
          "accessComplexity": "LOW",
          "availabilityImpact": "PARTIAL",
          "confidentialityImpact": "NONE"
        },
        "acInsufInfo": false,
        "impactScore": 2.9,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2002-12-11T05:00:00.000",
  "references": [
    {
      "url": "http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000551",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://marc.info/?l=bugtraq&m=103668430620531&w=2",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://marc.info/?l=bugtraq&m=103884988306241&w=2",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.iss.net/security_center/static/10555.php",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.linux-mandrake.com/en/security/2002/MDKSA-2002-084.php",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.linuxsecurity.com/advisories/engarde_advisory-2614.html",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.novell.com/linux/security/advisories/2002_046_pine.html",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.redhat.com/support/errata/RHSA-2002-270.html",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.redhat.com/support/errata/RHSA-2002-271.html",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.securityfocus.com/bid/6120",
      "tags": [
        "Exploit",
        "Patch",
        "Vendor Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000551",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://marc.info/?l=bugtraq&m=103668430620531&w=2",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://marc.info/?l=bugtraq&m=103884988306241&w=2",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.iss.net/security_center/static/10555.php",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.linux-mandrake.com/en/security/2002/MDKSA-2002-084.php",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.linuxsecurity.com/advisories/engarde_advisory-2614.html",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.novell.com/linux/security/advisories/2002_046_pine.html",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.redhat.com/support/errata/RHSA-2002-270.html",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.redhat.com/support/errata/RHSA-2002-271.html",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/6120",
      "tags": [
        "Exploit",
        "Patch",
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-Other"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Pine 4.44 and earlier allows remote attackers to cause a denial of service (core dump and failed restart) via an email message with a From header that contains a large number of quotation marks (\")."
    },
    {
      "lang": "es",
      "value": "Pine 4.44 y anteriores permite a atacantes remotos causar una denegación de servicio (volcado del núcleo y fallo al reiniciar) mediante un mensaje de correo electrónico con una cabecera From que contiene un número largo de comillas (\")."
    }
  ],
  "lastModified": "2026-06-16T21:59:06.627",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:university_of_washington:pine:3.98:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "49E9FC97-FE8B-46E9-BFB5-AC24524CCB97"
            },
            {
              "criteria": "cpe:2.3:a:university_of_washington:pine:4.0.2:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "A5BFF7E7-E49E-466A-A0D3-FDF13596BAF7"
            },
            {
              "criteria": "cpe:2.3:a:university_of_washington:pine:4.0.4:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "D405F684-38E2-4AC4-8451-F4842E67C509"
            },
            {
              "criteria": "cpe:2.3:a:university_of_washington:pine:4.10:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "358A71B0-79F2-4728-AC1E-5872BC64B2C3"
            },
            {
              "criteria": "cpe:2.3:a:university_of_washington:pine:4.20:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "16766308-A2F2-4155-A4F7-702808CC9450"
            },
            {
              "criteria": "cpe:2.3:a:university_of_washington:pine:4.21:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "AA9E599F-D922-42B7-9FB5-FB025B095895"
            },
            {
              "criteria": "cpe:2.3:a:university_of_washington:pine:4.30:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "9F7C068F-1664-4022-B88D-E486EEDD501C"
            },
            {
              "criteria": "cpe:2.3:a:university_of_washington:pine:4.33:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "A3F37B4B-C812-46AD-A23B-3FE60D31587D"
            },
            {
              "criteria": "cpe:2.3:a:university_of_washington:pine:4.44:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "8E10453B-C2A8-4203-B8D1-C77D00DE4315"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "cve@mitre.org"
}