CVE-2021-32055
published 2021-05-05CVE-2021-32055: Mutt 1.11.0 through 2.0.x before 2.0.7 (and NeoMutt 2019-10-25 through 2021-05-04) has a $imap_qresync issue in which imap/util.c has an out-of-bounds read in…
PriorityP345critical9.1CVSS 3.1
AVNACLPRNUINSUCHINAH
EPSS
2.55%
83.2th percentile
Mutt 1.11.0 through 2.0.x before 2.0.7 (and NeoMutt 2019-10-25 through 2021-05-04) has a $imap_qresync issue in which imap/util.c has an out-of-bounds read in situations where an IMAP sequence set ends with a comma. NOTE: the $imap_qresync setting for QRESYNC is not enabled by default.
Affected
23 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | mutt | < mutt 2.0.5-4.1 (bookworm) | mutt 2.0.5-4.1 (bookworm) |
| debian | neomutt | < mutt 2.0.5-4.1 (bookworm) | mutt 2.0.5-4.1 (bookworm) |
| msrc | cbl2_mutt_2.0.5-4_on_cbl_mariner_2.0 | — | — |
| msrc | cbl_mariner_2.0_arm | — | — |
| msrc | cbl_mariner_2.0_x64 | — | — |
| mutt | mutt | >= 0 < 2.0.5-4.1 | 2.0.5-4.1 |
| mutt | mutt | >= 0 < 2.0.5-4.1 | 2.0.5-4.1 |
| mutt | mutt | >= 0 < 2.0.5-4.1 | 2.0.5-4.1 |
| mutt | mutt | >= 0 < 2.0.5-4.1 | 2.0.5-4.1 |
| mutt | mutt | >= 0 < 1.9.4-3ubuntu0.6 | 1.9.4-3ubuntu0.6 |
| mutt | mutt | >= 0 < 1.13.2-1ubuntu0.5 | 1.13.2-1ubuntu0.5 |
| mutt | mutt | >= 0 < 2.1.4-1ubuntu1.1 | 2.1.4-1ubuntu1.1 |
| mutt | mutt | >= 0 < 1.5.24-1ubuntu0.6+esm2 | 1.5.24-1ubuntu0.6+esm2 |
| mutt | mutt | >= 1.11.0 < 2.0.7 | 2.0.7 |
| neomutt | neomutt | >= 0 < 20201127+dfsg.1-1.2 | 20201127+dfsg.1-1.2 |
| neomutt | neomutt | >= 0 < 20201127+dfsg.1-1.2 | 20201127+dfsg.1-1.2 |
| neomutt | neomutt | >= 0 < 20201127+dfsg.1-1.2 | 20201127+dfsg.1-1.2 |
| neomutt | neomutt | >= 0 < 20201127+dfsg.1-1.2 | 20201127+dfsg.1-1.2 |
| neomutt | neomutt | >= 0 < 20171215+dfsg.1-1ubuntu0.1~esm1 | 20171215+dfsg.1-1ubuntu0.1~esm1 |
| neomutt | neomutt | >= 0 < 20191207+dfsg.1-1.1ubuntu0.1~esm1 | 20191207+dfsg.1-1.1ubuntu0.1~esm1 |
| neomutt | neomutt | >= 0 < 20211029+dfsg1-1ubuntu0.1~esm1 | 20211029+dfsg1-1ubuntu0.1~esm1 |
| neomutt | neomutt | >= 0 < 20231103+dfsg1-1ubuntu0.1~esm1 | 20231103+dfsg1-1ubuntu0.1~esm1 |
| neomutt | neomutt | 20191025 – 20210504 | — |
CVSS provenance
nvdv3.19.1CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
nvdv2.05.8MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:P
osv9.8CRITICAL
vendor_ubuntu9.8CRITICAL
vendor_debian9.1CRITICAL
vendor_msrc9.1CRITICAL
vendor_redhat9.1CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
NeoMutt vulnerabilities
vendor_ubuntu·2025-01-15·CVSS 9.8
CVE-2018-14361 [CRITICAL] NeoMutt vulnerabilities
Title: NeoMutt vulnerabilities
Summary: Several security issues were fixed in NeoMutt.
Jeriko One discovered that NeoMutt incorrectly handled certain IMAP
and POP3 responses. An attacker could possibly use this issue to
cause NeoMutt to crash, resulting in a denial of service, or
the execution of arbitrary code. This issue only affected
Ubuntu 18.04 LTS. (CVE-2018-14349, CVE-2018-14350, CVE-2018-14351,
CVE-2018-14352, CVE-2018-14353, CVE-2018-14354, CVE-2018-14355,
CVE-2018-14356, CVE-2018-14357, CVE-2018-14358, CVE-2018-14359,
CVE-2018-14362)
Jeriko One discovered that NeoMutt incorrectly handled certain
NNTP-related operations. An attacker could possibly use this issue
to cause NeoMutt to crash, resulting in denial of service, or
the execution of arbitrary code. This issue only affect
Ubuntu
Mutt vulnerabilities
vendor_ubuntu·2022-04-28·CVSS 9.1
CVE-2022-1328 [CRITICAL] Mutt vulnerabilities
Title: Mutt vulnerabilities
Summary: Several security issues were fixed in Mutt.
It was discovered that Mutt incorrectly handled certain requests.
An attacker could possibly use this issue to expose sensitive information.
This issue only affected Ubuntu 20.04 LTS. (CVE-2021-32055)
It was discovered that Mutt incorrectly handled certain input.
An attacker could possibly use this issue to cause a crash,
or expose sensitive information. (CVE-2022-1328)
Instructions: In general, a standard system update will make all the necessary changes.
Microsoft
Mutt 1.11.0 through 2.0.x before 2.0.7 (and NeoMutt 2019-10-25 through 2021-05-04) has a $imap_qresync issue in which imap/util.c has an out-of-bounds read in situations where an IMAP sequence set end
vendor_msrc·2021-05-11·CVSS 9.1
CVE-2021-32055 [CRITICAL] CWE-125 Mutt 1.11.0 through 2.0.x before 2.0.7 (and NeoMutt 2019-10-25 through 2021-05-04) has a $imap_qresync issue in which imap/util.c has an out-of-bounds read in situations where an IMAP sequence set end
Mutt 1.11.0 through 2.0.x before 2.0.7 (and NeoMutt 2019-10-25 through 2021-05-04) has a $imap_qresync issue in which imap/util.c has an out-of-bounds read in situations where an IMAP sequence set ends with a comma. NOTE: the $imap_qresync setting for QRESYNC is not enabled by default.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post fo
Red Hat
neomutt: Out of bounds read in IMAP parser
vendor_redhat·2021-05-05·CVSS 9.1
CVE-2021-32055 [CRITICAL] CWE-119 neomutt: Out of bounds read in IMAP parser
neomutt: Out of bounds read in IMAP parser
Mutt 1.11.0 through 2.0.x before 2.0.7 (and NeoMutt 2019-10-25 through 2021-05-04) has a $imap_qresync issue in which imap/util.c has an out-of-bounds read in situations where an IMAP sequence set ends with a comma. NOTE: the $imap_qresync setting for QRESYNC is not enabled by default.
Statement: This flaw doesn't affect the Mutt versions shipped with Red Hat Enterprise Linux 6, 7 and 8 as it depends on QRESYNC feature included on newer versions of Mutt than the ones distributed by Red Hat.
Package: mutt (Red Hat Enterprise Linux 6) - Not affected
Package: mutt (Red Hat Enterprise Linux 7) - Not affected
Package: mutt (Red Hat Enterprise Linux 8) - Not affected
Package: mutt (Red Hat Enterprise Linux 9) - Not affected
Debian
CVE-2021-32055: mutt - Mutt 1.11.0 through 2.0.x before 2.0.7 (and NeoMutt 2019-10-25 through 2021-05-0...
vendor_debian·2021·CVSS 9.1
CVE-2021-32055 [CRITICAL] CVE-2021-32055: mutt - Mutt 1.11.0 through 2.0.x before 2.0.7 (and NeoMutt 2019-10-25 through 2021-05-0...
Mutt 1.11.0 through 2.0.x before 2.0.7 (and NeoMutt 2019-10-25 through 2021-05-04) has a $imap_qresync issue in which imap/util.c has an out-of-bounds read in situations where an IMAP sequence set ends with a comma. NOTE: the $imap_qresync setting for QRESYNC is not enabled by default.
Scope: local
bookworm: resolved (fixed in 2.0.5-4.1)
bullseye: resolved (fixed in 2.0.5-4.1)
forky: resolved (fixed in 2.0.5-4.1)
sid: resolved (fixed in 2.0.5-4.1)
trixie: resolved (fixed in 2.0.5-4.1)
OSV
neomutt vulnerabilities
osv·2025-01-15·CVSS 9.8
CVE-2018-14349 [CRITICAL] neomutt vulnerabilities
neomutt vulnerabilities
Jeriko One discovered that NeoMutt incorrectly handled certain IMAP
and POP3 responses. An attacker could possibly use this issue to
cause NeoMutt to crash, resulting in a denial of service, or
the execution of arbitrary code. This issue only affected
Ubuntu 18.04 LTS. (CVE-2018-14349, CVE-2018-14350, CVE-2018-14351,
CVE-2018-14352, CVE-2018-14353, CVE-2018-14354, CVE-2018-14355,
CVE-2018-14356, CVE-2018-14357, CVE-2018-14358, CVE-2018-14359,
CVE-2018-14362)
Jeriko One discovered that NeoMutt incorrectly handled certain
NNTP-related operations. An attacker could possibly use this issue
to cause NeoMutt to crash, resulting in denial of service, or
the execution of arbitrary code. This issue only affected
Ubuntu 18.04 LTS. (CVE-2018-14360, CVE-2018-14361, CVE-2018-1
GHSA
GHSA-vchg-jq4g-j9q7: Mutt 1
ghsa_unreviewed·2022-05-24
CVE-2021-32055 [CRITICAL] CWE-125 GHSA-vchg-jq4g-j9q7: Mutt 1
Mutt 1.11.0 through 2.0.x before 2.0.7 (and NeoMutt 2019-10-25 through 2021-05-04) has a $imap_qresync issue in which imap/util.c has an out-of-bounds read in situations where an IMAP sequence set ends with a comma. NOTE: the $imap_qresync setting for QRESYNC is not enabled by default.
OSV
mutt vulnerabilities
osv·2022-04-28·CVSS 9.1
CVE-2021-32055 [CRITICAL] mutt vulnerabilities
mutt vulnerabilities
It was discovered that Mutt incorrectly handled certain requests.
An attacker could possibly use this issue to expose sensitive information.
This issue only affected Ubuntu 20.04 LTS. (CVE-2021-32055)
It was discovered that Mutt incorrectly handled certain input.
An attacker could possibly use this issue to cause a crash,
or expose sensitive information. (CVE-2022-1328)
OSV
CVE-2021-32055: Mutt 1
osv·2021-05-05·CVSS 9.1
CVE-2021-32055 [CRITICAL] CVE-2021-32055: Mutt 1
Mutt 1.11.0 through 2.0.x before 2.0.7 (and NeoMutt 2019-10-25 through 2021-05-04) has a $imap_qresync issue in which imap/util.c has an out-of-bounds read in situations where an IMAP sequence set ends with a comma. NOTE: the $imap_qresync setting for QRESYNC is not enabled by default.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://lists.mutt.org/pipermail/mutt-announce/Week-of-Mon-20210503/000036.htmlhttps://github.com/neomutt/neomutt/commit/fa1db5785e5cfd9d3cd27b7571b9fe268d2ec2dchttps://gitlab.com/muttmua/mutt/-/commit/7c4779ac24d2fb68a2a47b58c7904118f40965d5https://security.gentoo.org/glsa/202105-05http://lists.mutt.org/pipermail/mutt-announce/Week-of-Mon-20210503/000036.htmlhttps://github.com/neomutt/neomutt/commit/fa1db5785e5cfd9d3cd27b7571b9fe268d2ec2dchttps://gitlab.com/muttmua/mutt/-/commit/7c4779ac24d2fb68a2a47b58c7904118f40965d5https://security.gentoo.org/glsa/202105-05
2021-05-05
Published