Pine 4.x allows a remote attacker to execute arbitrary commands via an index.html file which executes lynx and obtains a uudecoded file from a malicious web server, which is then executed by Pine.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Pine | University_of_washington | 3.98 (including) | 3.98 (including) |
| Pine | University_of_washington | 4.0 (including) | 4.0 (including) |
| Pine | University_of_washington | 4.2 (including) | 4.2 (including) |
| Pine | University_of_washington | 4.10 (including) | 4.10 (including) |