Pine 4.x allows a remote attacker to execute arbitrary commands via an index.html file which executes lynx and obtains a uudecoded file from a malicious web server, which is then executed by Pine.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Pine | University_of_washington | 3.98 (including) | 3.98 (including) |
Pine | University_of_washington | 4.0 (including) | 4.0 (including) |
Pine | University_of_washington | 4.2 (including) | 4.2 (including) |
Pine | University_of_washington | 4.10 (including) | 4.10 (including) |