CVE-2002-0002

Description

Format string vulnerability in stunnel before 3.22 when used in client mode for (1) smtp, (2) pop, or (3) nntp allows remote malicious servers to execute arbitrary code.

Risk Information

Base Score
7.4
MODERATE
Vector
AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
EPSS Score
Exploitation Probability
15.621

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in stunnel 3.3Windows
Multiple Vulnerabilities are affected in stunnel 3.4aWindows
Multiple Vulnerabilities are affected in stunnel 3.7Windows
Multiple Vulnerabilities are affected in stunnel 3.8Windows
Multiple Vulnerabilities are affected in stunnel 3.10Windows
Multiple Vulnerabilities are affected in stunnel 3.11Windows
Multiple Vulnerabilities are affected in stunnel 3.12Windows
Multiple Vulnerabilities are affected in stunnel 3.13Windows
Multiple Vulnerabilities are affected in stunnel 3.14Windows
Multiple Vulnerabilities are affected in stunnel 3.15Windows
Multiple Vulnerabilities are affected in stunnel 3.16Windows
Multiple Vulnerabilities are affected in stunnel 3.17Windows
Multiple Vulnerabilities are affected in stunnel 3.18Windows
Multiple Vulnerabilities are affected in stunnel 3.19Windows
Multiple Vulnerabilities are affected in stunnel 3.20Windows
Multiple Vulnerabilities are affected in stunnel 3.21Windows
Multiple Vulnerabilities are affected in stunnel 3.21aWindows
Multiple Vulnerabilities are affected in stunnel 3.21bWindows
Multiple Vulnerabilities are affected in stunnel 3.21cWindows
Multiple Vulnerabilities are affected in stunnel 3.22Windows
Multiple Vulnerabilities are affected in stunnel 3.24Windows
Multiple Vulnerabilities are affected in stunnel 3.9Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-348313stunnel (5.75)
PATCH-348313stunnel (5.75)
PATCH-348313stunnel (5.75)
PATCH-348313stunnel (5.75)
PATCH-348313stunnel (5.75)
PATCH-348313stunnel (5.75)
PATCH-348313stunnel (5.75)
PATCH-348313stunnel (5.75)
PATCH-348313stunnel (5.75)
PATCH-348313stunnel (5.75)
PATCH-348313stunnel (5.75)
PATCH-348313stunnel (5.75)
PATCH-348313stunnel (5.75)
PATCH-348313stunnel (5.75)
PATCH-348313stunnel (5.75)
PATCH-348313stunnel (5.75)
PATCH-348313stunnel (5.75)
PATCH-348313stunnel (5.75)
PATCH-348313stunnel (5.75)
PATCH-348313stunnel (5.75)
PATCH-348313stunnel (5.75)
PATCH-348313stunnel (5.75)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234