Описание
Уязвимость почтовых клиентов Mutt и NeoMutt связана с ошибками проверки криптографической подписи при обработке полей заголовка. Эксплуатация уязвимости может позволить нарушителю, действующему удаленно, изменить список доверенных получателей и раскрыть защищаемую информацию
Вендор
Наименование ПО
Версия ПО
Тип ПО
Операционные системы и аппаратные платформы
Уровень опасности уязвимости
Возможные меры по устранению уязвимости
Статус уязвимости
Наличие эксплойта
Информация об устранении
Ссылки на источники
Идентификаторы других систем описаний уязвимостей
- CVE
EPSS
7.4 High
CVSS3
7.1 High
CVSS2
Связанные уязвимости
In neomutt and mutt, the To and Cc email headers are not validated by cryptographic signing which allows an attacker that intercepts a message to change their value and include himself as a one of the recipients to compromise message confidentiality.
In neomutt and mutt, the To and Cc email headers are not validated by cryptographic signing which allows an attacker that intercepts a message to change their value and include himself as a one of the recipients to compromise message confidentiality.
In neomutt and mutt, the To and Cc email headers are not validated by cryptographic signing which allows an attacker that intercepts a message to change their value and include himself as a one of the recipients to compromise message confidentiality.
In neomutt and mutt, the To and Cc email headers are not validated by ...
In neomutt and mutt, the To and Cc email headers are not validated by cryptographic signing which allows an attacker that intercepts a message to change their value and include himself as a one of the recipients to compromise message confidentiality.
EPSS
7.4 High
CVSS3
7.1 High
CVSS2