Heap-based buffer overflow in the SendUidl in the POP3 capability for Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7, may allow remote POP3 mail servers to execute arbitrary code.
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A3250
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11042
https://exchange.xforce.ibmcloud.com/vulnerabilities/16869
http://www.securityfocus.com/bid/15495
http://www.redhat.com/support/errata/RHSA-2004-421.html
http://www.novell.com/linux/security/advisories/2004_36_mozilla.html
http://www.mozilla.org/projects/security/known-vulnerabilities.html#mozilla1.7
http://www.kb.cert.org/vuls/id/561022
http://secunia.com/advisories/10856