HomeSendmailCVE-2002-1337

CVE-2002-1337

UNKNOWN
10.0CVSS
Published: 2003-03-07
Updated: 2025-04-03
AI Analysis

Description

Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted address fields, related to sender and recipient header comments as processed by the crackaddr function of headers.c.

CVSS Metrics

Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Access Vector
network
Access Cmplx
low
Auth
none
Confidentiality
complete
Integrity
complete
Availability
complete
Weaknesses
CWE-120

Metadata

Primary Vendor
SENDMAIL
Published
3/7/2003
Last Modified
4/3/2025
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

sendmail : sendmailsendmail : sendmailsendmail : sendmailhp : alphaserver_scgentoo : linuxgentoo : linuxhp : hp-uxhp : hp-uxhp : hp-uxhp : hp-uxhp : hp-uxhp : hp-uxnetbsd : netbsdnetbsd : netbsdnetbsd : netbsdnetbsd : netbsdnetbsd : netbsdoracle : solarisoracle : solarisoracle : solarisoracle : solarissun : sunossun : sunossun : sunoswindriver : bsdoswindriver : bsdoswindriver : bsdoswindriver : platform_sa

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief