Search CVE reports
21 – 30 of 41 results
Some fixes available 17 of 19
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/util.c mishandles ".." directory traversal in a mailbox name.
2 affected packages
mutt, neomutt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
mutt | Fixed | Fixed | Fixed | Fixed |
neomutt | Not affected | Not affected | Not affected | Fixed |
Some fixes available 17 of 19
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. They allow remote IMAP servers to execute arbitrary commands via backquote characters, related to the mailboxes command associated with a manual...
2 affected packages
mutt, neomutt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
mutt | Fixed | Fixed | Fixed | Fixed |
neomutt | Not affected | Not affected | Not affected | Fixed |
Some fixes available 17 of 19
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap_quote_string in imap/util.c has an integer underflow.
2 affected packages
mutt, neomutt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
mutt | Fixed | Fixed | Fixed | Fixed |
neomutt | Not affected | Not affected | Not affected | Fixed |
Some fixes available 17 of 19
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap_quote_string in imap/util.c does not leave room for quote characters, leading to a stack-based buffer overflow.
2 affected packages
mutt, neomutt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
mutt | Fixed | Fixed | Fixed | Fixed |
neomutt | Not affected | Not affected | Not affected | Fixed |
Some fixes available 17 of 19
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/command.c mishandles a long IMAP status mailbox literal count size.
2 affected packages
mutt, neomutt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
mutt | Fixed | Fixed | Fixed | Fixed |
neomutt | Not affected | Not affected | Not affected | Fixed |
Some fixes available 17 of 19
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/message.c has a stack-based buffer overflow for a FETCH response with a long INTERNALDATE field.
2 affected packages
mutt, neomutt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
mutt | Fixed | Fixed | Fixed | Fixed |
neomutt | Not affected | Not affected | Not affected | Fixed |
Some fixes available 17 of 19
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/command.c mishandles a NO response without a message.
2 affected packages
neomutt, mutt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
neomutt | Not affected | Not affected | Not affected | Fixed |
mutt | Fixed | Fixed | Fixed | Fixed |
The write_one_header function in mutt 1.5.23 does not properly handle newline characters at the beginning of a header, which allows remote attackers to cause a denial of service (crash) via a header with an empty body, which...
1 affected package
mutt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
mutt | — | — | — | — |
Buffer overflow in copy.c in Mutt before 1.5.23 allows remote attackers to cause a denial of service (crash) via a crafted RFC2047 header line, related to address expansion.
1 affected package
mutt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
mutt | — | — | — | — |
Some fixes available 3 of 5
Mutt does not verify that the smtps server hostname matches the domain name of the subject of an X.509 certificate, which allows man-in-the-middle attackers to spoof an SSL SMTP server via an arbitrary certificate, a different...
1 affected package
mutt
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
mutt | — | — | — | — |