CVE-2002-1279
UnknownEPSS 0.40%
Last modified
CVE-2002-1279 is a vulnerability of currently unknown severity. Multiple buffer overflows in conf.c for Masqmail 0.1.x before 0.1.17, and 0.2.x before 0.2.15, allow local users to gain privileges via certain entries in the configuration file (-C option).. EPSS estimates a 0.40% chance of exploitation in the next 30 days.
Description
Multiple buffer overflows in conf.c for Masqmail 0.1.x before 0.1.17, and 0.2.x before 0.2.15, allow local users to gain privileges via certain entries in the configuration file (-C option).
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Masqmail | Masqmail | 0.1.16 |
References
- http://www.debian.org/security/2002/dsa-194Patch, Vendor Advisory
- http://www.iss.net/security_center/static/10605.phpVendor Advisory
- http://www.debian.org/security/2002/dsa-194Patch, Vendor Advisory
- http://www.iss.net/security_center/static/10605.phpVendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2002-1279?
Multiple buffer overflows in conf.c for Masqmail 0.1.x before 0.1.17, and 0.2.x before 0.2.15, allow local users to gain privileges via certain entries in the configuration file (-C option).
How severe is CVE-2002-1279?
Severity scoring for CVE-2002-1279 is pending analysis. The EPSS model estimates a 0.40% probability of exploitation in the next 30 days.
How do I fix CVE-2002-1279?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2002
- CVE-2002-1271The Mail::Mailer Perl module in the perl-MailTools package 1…
- CVE-2002-1272Alcatel OmniSwitch 7700/7800 switches running AOS 5.1.1 cont…
- CVE-2002-1275Unknown vulnerability in html2ps HTML/PostScript converter 1…
- CVE-2002-1276An incomplete fix for a cross-site scripting (XSS) vulnerabi…
- CVE-2002-1277Buffer overflow in Window Maker (wmaker) 0.80.0 and earlier …
- CVE-2002-1278The mailconf module in Linuxconf 1.24, and other versions be…
- CVE-2002-1280Memory leak in RealSecure Event Collector 6.5 allows attacke…
- CVE-2002-1281Unknown vulnerability in the rlogin KIO subsystem (rlogin.pr…
- CVE-2002-1282Unknown vulnerability in the telnet KIO subsystem (telnet.pr…
- CVE-2002-1283Buffer overflow in Novell iManager (eMFrame) before 1.5 allo…
- CVE-2002-1284The wizard in KGPG 0.6 through 0.8.2 does not properly provi…
- CVE-2002-1285runlpr in the LPRng package allows the local lp user to gain…
Are you affected by CVE-2002-1279?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
