CVE-2002-0379 describes a buffer overflow vulnerability in the University of Washington IMAP server (uw-imapd) versions 2001.315 and earlier. This flaw allows remote authenticated users to execute arbitrary code by sending a crafted, excessively long BODY request. With a CVSS score of 7.5, this vulnerability is considered highly severe, enabling full compromise of confidentiality, integrity, and availability with low attack complexity. While not listed on the KEV catalog, exploit code is publicly available on ExploitDB, though there is no indication of active exploitation or significant community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2000.283CPE matchmatch criteria | cpe:2.3:a:university_of_washington:uw-imap:2000.283:*:*:*:*:*:*:* | ||
2000.284CPE matchmatch criteria | cpe:2.3:a:university_of_washington:uw-imap:2000.284:*:*:*:*:*:*:* | ||
2000.287CPE matchmatch criteria | cpe:2.3:a:university_of_washington:uw-imap:2000.287:*:*:*:*:*:*:* | ||
2000.315CPE matchmatch criteria | cpe:2.3:a:university_of_washington:uw-imap:2000.315:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.