CVE-2004-0078
published 2004-03-03CVE-2004-0078: Buffer overflow in the index menu code (menu_pad_string of menu.c) for Mutt 1.4.1 and earlier allows remote attackers to cause a denial of service (crash) and…
PriorityP430high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
5.43%
91.8th percentile
Buffer overflow in the index menu code (menu_pad_string of menu.c) for Mutt 1.4.1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via certain mail messages.
Affected
23 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | mutt | < mutt 1.5.6-20040722+1 (bookworm) | mutt 1.5.6-20040722+1 (bookworm) |
| mutt | mutt | — | — |
| mutt | mutt | — | — |
| mutt | mutt | — | — |
| mutt | mutt | — | — |
| mutt | mutt | — | — |
| mutt | mutt | — | — |
| mutt | mutt | — | — |
| mutt | mutt | — | — |
| mutt | mutt | — | — |
| mutt | mutt | — | — |
| mutt | mutt | — | — |
| mutt | mutt | — | — |
| mutt | mutt | — | — |
| mutt | mutt | — | — |
| mutt | mutt | — | — |
| mutt | mutt | — | — |
| mutt | mutt | — | — |
| mutt | mutt | — | — |
| mutt | mutt | >= 0 < 1.5.6-20040722+1 | 1.5.6-20040722+1 |
| mutt | mutt | >= 0 < 1.5.6-20040722+1 | 1.5.6-20040722+1 |
| mutt | mutt | >= 0 < 1.5.6-20040722+1 | 1.5.6-20040722+1 |
| mutt | mutt | >= 0 < 1.5.6-20040722+1 | 1.5.6-20040722+1 |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
vendor_debian7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-rrvh-pgqf-54ph: Buffer overflow in the index menu code (menu_pad_string of menu
ghsa_unreviewed·2022-05-03
CVE-2004-0078 [HIGH] GHSA-rrvh-pgqf-54ph: Buffer overflow in the index menu code (menu_pad_string of menu
Buffer overflow in the index menu code (menu_pad_string of menu.c) for Mutt 1.4.1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via certain mail messages.
OSV
CVE-2004-0078: Buffer overflow in the index menu code (menu_pad_string of menu
osv·2004-03-03·CVSS 7.5
CVE-2004-0078 [HIGH] CVE-2004-0078: Buffer overflow in the index menu code (menu_pad_string of menu
Buffer overflow in the index menu code (menu_pad_string of menu.c) for Mutt 1.4.1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via certain mail messages.
Red Hat
security flaw
vendor_redhat·2004-02-11·CVSS 7.5
CVE-2004-0078 [HIGH] security flaw
security flaw
Buffer overflow in the index menu code (menu_pad_string of menu.c) for Mutt 1.4.1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via certain mail messages.
Debian
CVE-2004-0078: mutt - Buffer overflow in the index menu code (menu_pad_string of menu.c) for Mutt 1.4....
vendor_debian·2004·CVSS 7.5
CVE-2004-0078 [HIGH] CVE-2004-0078: mutt - Buffer overflow in the index menu code (menu_pad_string of menu.c) for Mutt 1.4....
Buffer overflow in the index menu code (menu_pad_string of menu.c) for Mutt 1.4.1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via certain mail messages.
Scope: local
bookworm: resolved (fixed in 1.5.6-20040722+1)
bullseye: resolved (fixed in 1.5.6-20040722+1)
forky: resolved (fixed in 1.5.6-20040722+1)
sid: resolved (fixed in 1.5.6-20040722+1)
trixie: resolved (fixed in 1.5.6-20040722+1)
No detection rules found.
No public exploits indexed.
ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2004-013.0.txthttp://bugs.debian.org/126336http://marc.info/?l=bugtraq&m=107651677817933&w=2http://marc.info/?l=bugtraq&m=107696262905039&w=2http://marc.info/?l=bugtraq&m=107884956930903&w=2http://www.mandrakesoft.com/security/advisories?name=MDKSA-2004:010http://www.osvdb.org/3918http://www.redhat.com/support/errata/RHSA-2004-050.htmlhttp://www.redhat.com/support/errata/RHSA-2004-051.htmlhttp://www.securityfocus.com/bid/9641http://www.slackware.com/security/viewer.php?l=slackware-security&y=2004&m=slackware-security.405053https://exchange.xforce.ibmcloud.com/vulnerabilities/15134https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A811https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A838ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2004-013.0.txthttp://bugs.debian.org/126336http://marc.info/?l=bugtraq&m=107651677817933&w=2http://marc.info/?l=bugtraq&m=107696262905039&w=2http://marc.info/?l=bugtraq&m=107884956930903&w=2http://www.mandrakesoft.com/security/advisories?name=MDKSA-2004:010http://www.osvdb.org/3918http://www.redhat.com/support/errata/RHSA-2004-050.htmlhttp://www.redhat.com/support/errata/RHSA-2004-051.htmlhttp://www.securityfocus.com/bid/9641http://www.slackware.com/security/viewer.php?l=slackware-security&y=2004&m=slackware-security.405053https://exchange.xforce.ibmcloud.com/vulnerabilities/15134https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A811https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A838
2004-03-03
Published