CVE-2002-1271

NameCVE-2002-1271
DescriptionThe Mail::Mailer Perl module in the perl-MailTools package 1.47 and earlier uses mailx as the default mailer, which allows remote attackers to execute arbitrary commands by inserting them into the mail body, which is then processed by mailx.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SuSE, Mageia, GitHub code/issues, web search, more)
ReferencesDSA-386
NVD severityhigh (attack range: remote)
Debian Bugs168381

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
libmailtools-perl (PTS)wheezy2.09-1fixed
jessie2.13-1fixed
buster, sid, stretch2.18-1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
libmailtools-perlsource(unstable)1.51high168381
libmailtools-perlsourcewoody1.44-1woody1highDSA-386

Search for package or bug name: Reporting problems