CVE-2021-3181
published 2021-01-19CVE-2021-3181: rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a denial of service (mailbox unavailability) by sending email messages with sequences of…
PriorityP429medium6.5CVSS 3.1
AVNACLPRNUIRSUCNINAH
EPSS
2.80%
85.0th percentile
rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a denial of service (mailbox unavailability) by sending email messages with sequences of semicolon characters in RFC822 address fields (aka terminators of empty groups). A small email message from the attacker can cause large memory consumption, and the victim may then be unable to see email messages from other persons.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | mutt | < mutt 2.0.5-1 (bookworm) | mutt 2.0.5-1 (bookworm) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| mutt | mutt | <= 2.0.4 | — |
| mutt | mutt | >= 0 < 2.0.5-1 | 2.0.5-1 |
| mutt | mutt | >= 0 < 2.0.5-1 | 2.0.5-1 |
| mutt | mutt | >= 0 < 2.0.5-1 | 2.0.5-1 |
| mutt | mutt | >= 0 < 2.0.5-1 | 2.0.5-1 |
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv6.5MEDIUM
vendor_debian6.5MEDIUM
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Mutt vulnerability
vendor_ubuntu·2021-01-25
CVE-2021-3181 Mutt vulnerability
Title: Mutt vulnerability
Summary: Mutt could be made to denial of service if it received a specially
crafted email message.
It was discovered that Mutt incorrectly handled certain email messages.
An attacker could possibly use this issue to cause a denial of service.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
mutt: Memory leak when parsing rfc822 group addresses
vendor_redhat·2021-01-19·CVSS 6.5
CVE-2021-3181 [MEDIUM] CWE-401 mutt: Memory leak when parsing rfc822 group addresses
mutt: Memory leak when parsing rfc822 group addresses
rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a denial of service (mailbox unavailability) by sending email messages with sequences of semicolon characters in RFC822 address fields (aka terminators of empty groups). A small email message from the attacker can cause large memory consumption, and the victim may then be unable to see email messages from other persons.
Package: mutt (Red Hat Enterprise Linux 6) - Out of support scope
Package: mutt (Red Hat Enterprise Linux 7) - Out of support scope
Package: mutt (Red Hat Enterprise Linux 9) - Not affected
Debian
CVE-2021-3181: mutt - rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a denial of serv...
vendor_debian·2021·CVSS 6.5
CVE-2021-3181 [MEDIUM] CVE-2021-3181: mutt - rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a denial of serv...
rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a denial of service (mailbox unavailability) by sending email messages with sequences of semicolon characters in RFC822 address fields (aka terminators of empty groups). A small email message from the attacker can cause large memory consumption, and the victim may then be unable to see email messages from other persons.
Scope: local
bookworm: resolved (fixed in 2.0.5-1)
bullseye: resolved (fixed in 2.0.5-1)
forky: resolved (fixed in 2.0.5-1)
sid: resolved (fixed in 2.0.5-1)
trixie: resolved (fixed in 2.0.5-1)
GHSA
GHSA-prp6-7gc9-4jmw: rfc822
ghsa_unreviewed·2022-05-24
CVE-2021-3181 [MEDIUM] CWE-400 GHSA-prp6-7gc9-4jmw: rfc822
rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a denial of service (mailbox unavailability) by sending email messages with sequences of semicolon characters in RFC822 address fields (aka terminators of empty groups). A small email message from the attacker can cause large memory consumption, and the victim may then be unable to see email messages from other persons.
OSV
CVE-2021-3181: rfc822
osv·2021-01-19·CVSS 6.5
CVE-2021-3181 [MEDIUM] CVE-2021-3181: rfc822
rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a denial of service (mailbox unavailability) by sending email messages with sequences of semicolon characters in RFC822 address fields (aka terminators of empty groups). A small email message from the attacker can cause large memory consumption, and the victim may then be unable to see email messages from other persons.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.openwall.com/lists/oss-security/2021/01/19/10http://www.openwall.com/lists/oss-security/2021/01/27/3https://gitlab.com/muttmua/mutt/-/commit/4a2becbdb4422aaffe3ce314991b9d670b7adf17https://gitlab.com/muttmua/mutt/-/commit/939b02b33ae29bc0d642570c1dcfd4b339037d19https://gitlab.com/muttmua/mutt/-/commit/d4305208955c5cdd9fe96dfa61e7c1e14e176a14https://gitlab.com/muttmua/mutt/-/issues/323https://lists.debian.org/debian-lts-announce/2021/01/msg00017.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DXGWXFO77HBCD3VYEIYHHYU33LYWWWNQ/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/P2OMLQKAOHPYQA4GI7ZUO6UKCPUHLYO7/https://security.gentoo.org/glsa/202101-25https://www.debian.org/security/2021/dsa-4838http://www.openwall.com/lists/oss-security/2021/01/19/10http://www.openwall.com/lists/oss-security/2021/01/27/3https://gitlab.com/muttmua/mutt/-/commit/4a2becbdb4422aaffe3ce314991b9d670b7adf17https://gitlab.com/muttmua/mutt/-/commit/939b02b33ae29bc0d642570c1dcfd4b339037d19https://gitlab.com/muttmua/mutt/-/commit/d4305208955c5cdd9fe96dfa61e7c1e14e176a14https://gitlab.com/muttmua/mutt/-/issues/323https://lists.debian.org/debian-lts-announce/2021/01/msg00017.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DXGWXFO77HBCD3VYEIYHHYU33LYWWWNQ/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/P2OMLQKAOHPYQA4GI7ZUO6UKCPUHLYO7/https://security.gentoo.org/glsa/202101-25https://www.debian.org/security/2021/dsa-4838
2021-01-19
Published