Information on source package mutt

Available versions

ReleaseVersion
squeeze1.5.20-9+squeeze2
wheezy, sid1.5.21-5

Open issues

Open unimportant issues

BugDescription
CVE-2007-1268Mutt 1.5.13 and earlier does not properly use the --status-fd argument ...

Resolved issues

BugDescription
CVE-2003-0140Buffer overflow in Mutt 1.4.0 and possibly earlier versions, 1.5.x up ...
CVE-2003-0167Multiple off-by-one buffer overflows in the IMAP capability for Mutt ...
CVE-2004-0078Buffer overflow in the index menu code (menu_pad_string of menu.c) for ...
CVE-2005-2351Minor DoS condition in mutt due to preditable tempfiles
CVE-2005-2642Buffer overflow in the mutt_decode_xbit function in Handler.c for Mutt ...
CVE-2006-3242Stack-based buffer overflow in the browse_get_namespace function in ...
CVE-2006-5297Race condition in the safe_open function in the Mutt mail client ...
CVE-2006-5298The mutt_adv_mktemp function in the Mutt mail client 1.5.12 and ...
CVE-2007-1558The APOP protocol allows remote attackers to guess the first 3 ...
CVE-2007-2683Buffer overflow in Mutt 1.4.2 might allow local users to execute ...
CVE-2009-1390Mutt 1.5.19, when linked against (1) OpenSSL (mutt_ssl.c) or (2) ...
CVE-2009-3765mutt_ssl.c in mutt 1.5.19 and 1.5.20, when OpenSSL is used, does not ...
CVE-2009-3766mutt_ssl.c in mutt 1.5.16 and other versions before 1.5.19, when ...
CVE-2011-1429Mutt does not verify that the smtps server hostname matches the domain ...

Security announcements

DSADescription
DSA-1108mutt - buffer overflow
DSA-274mutt - buffer overflow
DSA-268mutt - buffer overflow

Search for package or bug name: Reporting problems

Home - Testing Security Team - Debian Security - Source (SVN)