CVE-2003-0744: Leafnode

Medium severity, CVSS 5.0. EPSS: 1.8% chance of exploitation in the next 30 days.

The fetchnews NNTP client in leafnode 1.9.3 to 1.9.41 allows remote attackers to cause a denial of service (process hang and termination) via certain malformed Usenet news articles that cause fetchnews to hang while waiting for input.

Affected products

  • Leafnode Leafnode: version 1.9.19 only; version 1.9.20 only; version 1.9.21 only; version 1.9.22 only; version 1.9.23 only; version 1.9.24 only; …

Published 2003-10-20. Last modified 2026-06-16.