Unrated severityNVD Advisory· Published Mar 18, 2003· Updated Apr 16, 2026
CVE-2003-0143
CVE-2003-0143
Description
The pop_msg function in qpopper 4.0.x before 4.0.5fc2 does not null terminate a message buffer after a call to Qvsnprintf, which could allow authenticated users to execute arbitrary code via a buffer overflow in a mdef command with a long macro name.
Affected products
4Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- www.debian.org/security/2003/dsa-259nvdPatchVendor Advisory
- www.securityfocus.com/bid/7058nvdExploitPatchVendor Advisory
- marc.infonvd
- marc.infonvd
- marc.infonvd
- marc.infonvd
- www.novell.com/linux/security/advisories/2003_018_qpopper.htmlnvd
- exchange.xforce.ibmcloud.com/vulnerabilities/11516nvd
News mentions
0No linked articles in our index yet.