Total vulnerabilities in the database
Pine 4.2.1 through 4.4.4 puts Unix usernames and/or uid into Sender: and X-Sender: headers, which could allow remote attackers to obtain sensitive information.
Software | From | Fixed in |
---|---|---|
university_of_washington / pine | 4.30 | 4.30.x |
university_of_washington / pine | 4.21 | 4.21.x |
university_of_washington / pine | 4.44 | 4.44.x |
university_of_washington / pine | 4.33 | 4.33.x |