cbcvebase.
CVE-2021-32055
published 2021-05-05

CVE-2021-32055: Mutt 1.11.0 through 2.0.x before 2.0.7 (and NeoMutt 2019-10-25 through 2021-05-04) has a $imap_qresync issue in which imap/util.c has an out-of-bounds read in…

PriorityP345critical9.1CVSS 3.1
AVNACLPRNUINSUCHINAH
EPSS
2.55%
83.2th percentile
Mutt 1.11.0 through 2.0.x before 2.0.7 (and NeoMutt 2019-10-25 through 2021-05-04) has a $imap_qresync issue in which imap/util.c has an out-of-bounds read in situations where an IMAP sequence set ends with a comma. NOTE: the $imap_qresync setting for QRESYNC is not enabled by default.

Affected

23 ranges
VendorProductVersion rangeFixed in
debianmutt< mutt 2.0.5-4.1 (bookworm)mutt 2.0.5-4.1 (bookworm)
debianneomutt< mutt 2.0.5-4.1 (bookworm)mutt 2.0.5-4.1 (bookworm)
msrccbl2_mutt_2.0.5-4_on_cbl_mariner_2.0
msrccbl_mariner_2.0_arm
msrccbl_mariner_2.0_x64
muttmutt>= 0 < 2.0.5-4.12.0.5-4.1
muttmutt>= 0 < 2.0.5-4.12.0.5-4.1
muttmutt>= 0 < 2.0.5-4.12.0.5-4.1
muttmutt>= 0 < 2.0.5-4.12.0.5-4.1
muttmutt>= 0 < 1.9.4-3ubuntu0.61.9.4-3ubuntu0.6
muttmutt>= 0 < 1.13.2-1ubuntu0.51.13.2-1ubuntu0.5
muttmutt>= 0 < 2.1.4-1ubuntu1.12.1.4-1ubuntu1.1
muttmutt>= 0 < 1.5.24-1ubuntu0.6+esm21.5.24-1ubuntu0.6+esm2
muttmutt>= 1.11.0 < 2.0.72.0.7
neomuttneomutt>= 0 < 20201127+dfsg.1-1.220201127+dfsg.1-1.2
neomuttneomutt>= 0 < 20201127+dfsg.1-1.220201127+dfsg.1-1.2
neomuttneomutt>= 0 < 20201127+dfsg.1-1.220201127+dfsg.1-1.2
neomuttneomutt>= 0 < 20201127+dfsg.1-1.220201127+dfsg.1-1.2
neomuttneomutt>= 0 < 20171215+dfsg.1-1ubuntu0.1~esm120171215+dfsg.1-1ubuntu0.1~esm1
neomuttneomutt>= 0 < 20191207+dfsg.1-1.1ubuntu0.1~esm120191207+dfsg.1-1.1ubuntu0.1~esm1
neomuttneomutt>= 0 < 20211029+dfsg1-1ubuntu0.1~esm120211029+dfsg1-1ubuntu0.1~esm1
neomuttneomutt>= 0 < 20231103+dfsg1-1ubuntu0.1~esm120231103+dfsg1-1ubuntu0.1~esm1
neomuttneomutt20191025 – 20210504

CVSS provenance

nvdv3.19.1CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
nvdv2.05.8MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:P
osv9.8CRITICAL
vendor_ubuntu9.8CRITICAL
vendor_debian9.1CRITICAL
vendor_msrc9.1CRITICAL
vendor_redhat9.1CRITICAL
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.