
CVE-2000-0320
https://notcve.org/view.php?id=CVE-2000-0320
21 Apr 2000 — Qpopper 2.53 and 3.0 does not properly identify the \n string which identifies the end of message text, which allows a remote attacker to cause a denial of service or corrupt mailboxes via a message line that is 1023 characters long and ends in \n. • http://www.securityfocus.com/bid/1133 •

CVE-2000-0096 – Qualcomm qpopper 3.0 - 'LIST' Remote Buffer Overflow
https://notcve.org/view.php?id=CVE-2000-0096
26 Jan 2000 — Buffer overflow in qpopper 3.0 beta versions allows local users to gain privileges via a long LIST command. • https://www.exploit-db.com/exploits/19729 •

CVE-1999-0822 – Qualcomm qpopper 3.0/3.0 b20 - Remote Buffer Overflow
https://notcve.org/view.php?id=CVE-1999-0822
30 Nov 1999 — Buffer overflow in Qpopper (qpop) 3.0 allows remote root access via AUTH command. • https://www.exploit-db.com/exploits/19645 •

CVE-1999-0006 – Qualcomm qpopper 2.4 - POP Server Buffer Overflow
https://notcve.org/view.php?id=CVE-1999-0006
14 Jul 1998 — Buffer overflow in POP servers based on BSD/Qualcomm's qpopper allows remote attackers to gain root access using a long PASS command. • https://www.exploit-db.com/exploits/19109 • CWE-125: Out-of-bounds Read •