FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

pine insecure URL handling

Affected packages
iw-pine < 4.44
pine < 4.44
zh-pine < 4.44

Details

VuXML ID 34134fd4-5d81-11d8-80e3-0020ed76ef5a
Discovery 2002-01-04
Entry 2004-02-12

An attacker may send an email message containing a specially constructed URL that will execute arbitrary commands when viewed.

References

FreeBSD Advisory SA-02:05.pine