CVE-2003-0300
UnknownEPSS 3.36%
Last modified
CVE-2003-0300 is a vulnerability of currently unknown severity. The IMAP Client for Sylpheed 0.8.11 allows remote malicious IMAP servers to cause a denial of service (crash) via certain large literal size values that cause either integer signedness errors or integer overflow errors.. EPSS estimates a 3.36% chance of exploitation in the next 30 days.
Description
The IMAP Client for Sylpheed 0.8.11 allows remote malicious IMAP servers to cause a denial of service (crash) via certain large literal size values that cause either integer signedness errors or integer overflow errors.
Metrics
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Microsoft | Outlook Express | 6.00.2800.1106 | — |
| Mozilla | Mozilla | 1.3 | — |
| Mozilla | Mozilla | 1.4 | Alpha |
| Mutt | Mutt | 1.4.1 | — |
| Qualcomm | Eudora | 5.2.1 | — |
| Stuart Parmenter | Balsa | 2.0.10 | — |
| Sylpheed | Sylpheed Email Client | 0.8.11 | — |
| University Of Washington | Pine | 4.53 | — |
| Ximian | Evolution | 1.2.4 | — |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2003-0300?
The IMAP Client for Sylpheed 0.8.11 allows remote malicious IMAP servers to cause a denial of service (crash) via certain large literal size values that cause either integer signedness errors or integer overflow errors.
How severe is CVE-2003-0300?
Severity scoring for CVE-2003-0300 is pending analysis. The EPSS model estimates a 3.36% probability of exploitation in the next 30 days.
How do I fix CVE-2003-0300?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
Are you affected by CVE-2003-0300?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
