CVE-2009-1029
high · 9.3Stack-based buffer overflow in POP Peeper 3.4.0.0 and earlier allows remote POP3 servers to execute arbitrary code via a long Date header, related to Imap.dll.
9.3
CVSS
31.8%
EPSS (exploit prob.)
98th
EPSS percentile
2009-03-20
Published
AV:N/AC:M/Au:N/C:C/I:C/A:C
Weaknesses
CWE-119
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| poppeeper | pop_peeper | <= 3.4.0.0 |
| poppeeper | pop_peeper | 2.4.3 |
| poppeeper | pop_peeper | 3.0 |
| poppeeper | pop_peeper | 3.0.1 |
Check a specific version with /api/v1/cve/match.
References
- http://secunia.com/advisories/34077
- http://www.krakowlabs.com/res/adv/KL0309ADV-poppeeper_date-bof.txt
- http://www.securityfocus.com/archive/1/501701/100/0/threaded
- http://www.securityfocus.com/bid/34093
- https://exchange.xforce.ibmcloud.com/vulnerabilities/49215
- https://www.exploit-db.com/exploits/8203
- http://secunia.com/advisories/34077
- http://www.krakowlabs.com/res/adv/KL0309ADV-poppeeper_date-bof.txt
- http://www.securityfocus.com/archive/1/501701/100/0/threaded
- http://www.securityfocus.com/bid/34093
- https://exchange.xforce.ibmcloud.com/vulnerabilities/49215
- https://www.exploit-db.com/exploits/8203
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2009-1029