modes.c in smail 3.2.0.120 implements signal handlers with certain unsafe library calls, which may allow attackers to execute arbitrary code via signal handler race conditions, possibly using xmalloc.
AV:N/AC:H/Au:N/C:C/I:C/A:C
This vulnerability has a 1.82% probability of being exploited in the next 30 days, ranking higher than 77% of all scored CVEs.