Unrated severityNVD Advisory· Published Nov 2, 2009· Updated Apr 23, 2026
CVE-2009-3838
CVE-2009-3838
Description
Stack-based buffer overflow in Pegasus Mail (PMail) 4.41 and possibly 4.51 allows remote POP3 servers to cause a denial of service (application crash) or possibly execute arbitrary code via a long error message.
Affected products
2cpe:2.3:a:pmail:pegasus_mail:4.41:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:pmail:pegasus_mail:4.41:*:*:*:*:*:*:*
- cpe:2.3:a:pmail:pegasus_mail:4.51:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
9- www.packetstormsecurity.org/0910-exploits/pegasusmc-dos.txtnvdExploit
- www.securityfocus.com/bid/36797nvdExploit
- www.securitytracker.com/idnvdExploit
- secunia.com/advisories/37134nvdVendor Advisory
- www.vupen.com/english/advisories/2009/3026nvdVendor Advisory
- www.vupen.com/exploits/Pegasus_Mail_POP3_Message_Handling_Remote_Buffer_Overflow_Exploit_3026233.phpnvdVendor Advisory
- osvdb.org/59261nvd
- www.securityfocus.com/archive/1/507377/100/0/threadednvd
- exchange.xforce.ibmcloud.com/vulnerabilities/53933nvd
News mentions
0No linked articles in our index yet.