CVE-2020-28896
published 2020-11-23CVE-2020-28896: Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The…
PriorityP431medium5.3CVSS 3.1
AVNACHPRNUIRSUCHINAN
EPSS
2.32%
81.6th percentile
Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The connection was not properly closed, and the code could continue attempting to authenticate. This could result in authentication credentials being exposed on an unencrypted connection, or to a machine-in-the-middle.
Affected
17 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | mutt | < mutt 2.0.2-1 (bookworm) | mutt 2.0.2-1 (bookworm) |
| debian | neomutt | < mutt 2.0.2-1 (bookworm) | mutt 2.0.2-1 (bookworm) |
| mutt | mutt | < 2.0.2 | 2.0.2 |
| mutt | mutt | >= 0 < 2.0.2-1 | 2.0.2-1 |
| mutt | mutt | >= 0 < 2.0.2-1 | 2.0.2-1 |
| mutt | mutt | >= 0 < 2.0.2-1 | 2.0.2-1 |
| mutt | mutt | >= 0 < 2.0.2-1 | 2.0.2-1 |
| neomutt | neomutt | < 2020-11-20 | 2020-11-20 |
| neomutt | neomutt | >= 0 < 20201120+dfsg.1-1 | 20201120+dfsg.1-1 |
| neomutt | neomutt | >= 0 < 20201120+dfsg.1-1 | 20201120+dfsg.1-1 |
| neomutt | neomutt | >= 0 < 20201120+dfsg.1-1 | 20201120+dfsg.1-1 |
| neomutt | neomutt | >= 0 < 20201120+dfsg.1-1 | 20201120+dfsg.1-1 |
| neomutt | neomutt | >= 0 < 20171215+dfsg.1-1ubuntu0.1~esm1 | 20171215+dfsg.1-1ubuntu0.1~esm1 |
| neomutt | neomutt | >= 0 < 20191207+dfsg.1-1.1ubuntu0.1~esm1 | 20191207+dfsg.1-1.1ubuntu0.1~esm1 |
| neomutt | neomutt | >= 0 < 20211029+dfsg1-1ubuntu0.1~esm1 | 20211029+dfsg1-1ubuntu0.1~esm1 |
| neomutt | neomutt | >= 0 < 20231103+dfsg1-1ubuntu0.1~esm1 | 20231103+dfsg1-1ubuntu0.1~esm1 |
CVSS provenance
nvdv3.15.3MEDIUMCVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N
nvdv2.02.6LOWAV:N/AC:H/Au:N/C:P/I:N/A:N
osv9.8CRITICAL
vendor_ubuntu9.8CRITICAL
vendor_debian5.3MEDIUM
vendor_redhat5.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
NeoMutt vulnerabilities
vendor_ubuntu·2025-01-15·CVSS 9.8
CVE-2018-14361 [CRITICAL] NeoMutt vulnerabilities
Title: NeoMutt vulnerabilities
Summary: Several security issues were fixed in NeoMutt.
Jeriko One discovered that NeoMutt incorrectly handled certain IMAP
and POP3 responses. An attacker could possibly use this issue to
cause NeoMutt to crash, resulting in a denial of service, or
the execution of arbitrary code. This issue only affected
Ubuntu 18.04 LTS. (CVE-2018-14349, CVE-2018-14350, CVE-2018-14351,
CVE-2018-14352, CVE-2018-14353, CVE-2018-14354, CVE-2018-14355,
CVE-2018-14356, CVE-2018-14357, CVE-2018-14358, CVE-2018-14359,
CVE-2018-14362)
Jeriko One discovered that NeoMutt incorrectly handled certain
NNTP-related operations. An attacker could possibly use this issue
to cause NeoMutt to crash, resulting in denial of service, or
the execution of arbitrary code. This issue only affect
Ubuntu
Mutt vulnerability
vendor_ubuntu·2020-11-25
CVE-2020-28896 Mutt vulnerability
Title: Mutt vulnerability
Summary: Mutt could be made to expose sensitive information.
It was discovered that Mutt incorrectly handled certain connections.
An attacker could possibly use this issue to expose sensitive information.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
mutt: Incorrect handling of invalid initial IMAP responses could lead to an authentication attempt over unencrypted connection
vendor_redhat·2020-11-20·CVSS 5.3
CVE-2020-28896 [MEDIUM] CWE-319 mutt: Incorrect handling of invalid initial IMAP responses could lead to an authentication attempt over unencrypted connection
mutt: Incorrect handling of invalid initial IMAP responses could lead to an authentication attempt over unencrypted connection
Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The connection was not properly closed, and the code could continue attempting to authenticate. This could result in authentication credentials being exposed on an unencrypted connection, or to a machine-in-the-middle.
Statement: Red Hat Product Security has rated the severity of this flaw as Moderate because although the Confidentiality impact is high, the attack complexity is also high as a particular attacker would at least need to coordinate social engineering a victim to connect to a bad server, and also pe
Debian
CVE-2020-28896: mutt - Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_t...
vendor_debian·2020·CVSS 5.3
CVE-2020-28896 [MEDIUM] CVE-2020-28896: mutt - Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_t...
Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The connection was not properly closed, and the code could continue attempting to authenticate. This could result in authentication credentials being exposed on an unencrypted connection, or to a machine-in-the-middle.
Scope: local
bookworm: resolved (fixed in 2.0.2-1)
bullseye: resolved (fixed in 2.0.2-1)
forky: resolved (fixed in 2.0.2-1)
sid: resolved (fixed in 2.0.2-1)
trixie: resolved (fixed in 2.0.2-1)
OSV
neomutt vulnerabilities
osv·2025-01-15·CVSS 9.8
CVE-2018-14349 [CRITICAL] neomutt vulnerabilities
neomutt vulnerabilities
Jeriko One discovered that NeoMutt incorrectly handled certain IMAP
and POP3 responses. An attacker could possibly use this issue to
cause NeoMutt to crash, resulting in a denial of service, or
the execution of arbitrary code. This issue only affected
Ubuntu 18.04 LTS. (CVE-2018-14349, CVE-2018-14350, CVE-2018-14351,
CVE-2018-14352, CVE-2018-14353, CVE-2018-14354, CVE-2018-14355,
CVE-2018-14356, CVE-2018-14357, CVE-2018-14358, CVE-2018-14359,
CVE-2018-14362)
Jeriko One discovered that NeoMutt incorrectly handled certain
NNTP-related operations. An attacker could possibly use this issue
to cause NeoMutt to crash, resulting in denial of service, or
the execution of arbitrary code. This issue only affected
Ubuntu 18.04 LTS. (CVE-2018-14360, CVE-2018-14361, CVE-2018-1
GHSA
GHSA-346p-qx4x-g348: Mutt before 2
ghsa_unreviewed·2022-05-24
CVE-2020-28896 [HIGH] CWE-522 GHSA-346p-qx4x-g348: Mutt before 2
Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The connection was not properly closed, and the code could continue attempting to authenticate. This could result in authentication credentials being exposed on an unencrypted connection, or to a machine-in-the-middle.
OSV
CVE-2020-28896: Mutt before 2
osv·2020-11-23·CVSS 5.3
CVE-2020-28896 [MEDIUM] CVE-2020-28896: Mutt before 2
Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The connection was not properly closed, and the code could continue attempting to authenticate. This could result in authentication credentials being exposed on an unencrypted connection, or to a machine-in-the-middle.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://github.com/neomutt/neomutt/commit/9c36717a3e2af1f2c1b7242035455ec8112b4b06https://github.com/neomutt/neomutt/releases/tag/20201120https://gitlab.com/muttmua/mutt/-/commit/04b06aaa3e0cc0022b9b01dbca2863756ebbf59ahttps://gitlab.com/muttmua/mutt/-/commit/d92689088dfe80a290ec836e292376e2d9984f8fhttps://lists.debian.org/debian-lts-announce/2020/11/msg00048.htmlhttps://security.gentoo.org/glsa/202101-32https://github.com/neomutt/neomutt/commit/9c36717a3e2af1f2c1b7242035455ec8112b4b06https://github.com/neomutt/neomutt/releases/tag/20201120https://gitlab.com/muttmua/mutt/-/commit/04b06aaa3e0cc0022b9b01dbca2863756ebbf59ahttps://gitlab.com/muttmua/mutt/-/commit/d92689088dfe80a290ec836e292376e2d9984f8fhttps://lists.debian.org/debian-lts-announce/2020/11/msg00048.htmlhttps://security.gentoo.org/glsa/202101-32
2020-11-23
Published