Debian Neomutt vulnerabilities

24 known vulnerabilities affecting debian/neomutt.

Total CVEs
24
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL14HIGH1MEDIUM5LOW4

Vulnerabilities

Page 2 of 2
CVE-2018-14358CRITICALCVSS 9.8fixed in mutt 1.10.1-1 (bookworm)2018
CVE-2018-14358 [CRITICAL] CVE-2018-14358: mutt - An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. ima... An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/message.c has a stack-based buffer overflow for a FETCH response with a long RFC822.SIZE field. Scope: local bookworm: resolved (fixed in 1.10.1-1) bullseye: resolved (fixed in 1.10.1-1) forky: resolved (fixed in 1.10.1-1) sid: resolved (fixed in 1.10.1-1) trixie: resolved (fixed in 1
debian
CVE-2018-14362CRITICALCVSS 9.8fixed in mutt 1.10.1-1 (bookworm)2018
CVE-2018-14362 [CRITICAL] CVE-2018-14362: mutt - An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. pop... An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. pop.c does not forbid characters that may have unsafe interaction with message-cache pathnames, as demonstrated by a '/' character. Scope: local bookworm: resolved (fixed in 1.10.1-1) bullseye: resolved (fixed in 1.10.1-1) forky: resolved (fixed in 1.10.1-1) sid: resolved (fixed in 1.10.1-
debian
CVE-2018-14363HIGHCVSS 7.5fixed in mutt 1.9.1-1 (bookworm)2018
CVE-2018-14363 [HIGH] CVE-2018-14363: mutt - An issue was discovered in NeoMutt before 2018-07-16. newsrc.c does not properly... An issue was discovered in NeoMutt before 2018-07-16. newsrc.c does not properly restrict '/' characters that may have unsafe interaction with cache pathnames. Scope: local bookworm: resolved (fixed in 1.9.1-1) bullseye: resolved (fixed in 1.9.1-1) forky: resolved (fixed in 1.9.1-1) sid: resolved (fixed in 1.9.1-1) trixie: resolved (fixed in 1.9.1-1)
debian
CVE-2018-14355MEDIUMCVSS 5.3fixed in mutt 1.10.1-1 (bookworm)2018
CVE-2018-14355 [MEDIUM] CVE-2018-14355: mutt - An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. ima... An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/util.c mishandles ".." directory traversal in a mailbox name. Scope: local bookworm: resolved (fixed in 1.10.1-1) bullseye: resolved (fixed in 1.10.1-1) forky: resolved (fixed in 1.10.1-1) sid: resolved (fixed in 1.10.1-1) trixie: resolved (fixed in 1.10.1-1)
debian