CVE-2002-1271

NameCVE-2002-1271
DescriptionThe Mail::Mailer Perl module in the perl-MailTools package 1.47 and earlier uses mailx as the default mailer, which allows remote attackers to execute arbitrary commands by inserting them into the mail body, which is then processed by mailx.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
ReferencesDSA-386
Debian Bugs168381

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
libmailtools-perl (PTS)bullseye2.21-1fixed
bookworm2.21-2fixed
sid, trixie2.22-1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
libmailtools-perlsourcewoody1.44-1woody1DSA-386
libmailtools-perlsource(unstable)1.51168381

Search for package or bug name: Reporting problems