Back

MEDIUM

pine username disclosure issue

Published Jun 28, 2005

Description

Pine 4.2.1 through 4.4.4 puts Unix usernames and/or uid into Sender: and X-Sender: headers, which could allow remote attackers to obtain sensitive information.

Affected products

Remediation

Red Hat statement

The Red Hat Product Security has rated this issue as having low security impact, a future update may address this flaw. More information regarding issue severity can be found here: https://access.redhat.com/security/updates/classification/

Metrics

Weaknesses (0)

No CWE recorded.

References (7)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Jun 28, 2005
Updated Sep 16, 2024
Reserved Jun 28, 2005
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Low
Public date Jun 7, 2002