Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-43863

Опубликовано: 04 мая 2026
Источник: redhat
CVSS3: 3.7
EPSS Низкий

Описание

mutt before 2.3.2 has an infinite loop in data_object_to_stream in crypt-gpgme.c.

A flaw was found in mutt, an email client. A remote attacker could exploit this vulnerability by sending specially crafted input, which would trigger an infinite loop in the data_object_to_stream function. This issue, located in the crypt-gpgme.c component, can lead to a Denial of Service (DoS), causing the application to become unresponsive.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10muttFix deferred
Red Hat Enterprise Linux 6muttOut of support scope
Red Hat Enterprise Linux 7muttFix deferred
Red Hat Enterprise Linux 8muttFix deferred
Red Hat Enterprise Linux 9muttFix deferred

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-835
https://bugzilla.redhat.com/show_bug.cgi?id=2464865mutt: Mutt: Remote Denial of Service via crafted input

EPSS

Процентиль: 10%
0.00201
Низкий

3.7 Low

CVSS3

Связанные уязвимости

CVSS3: 3.7
ubuntu
3 месяца назад

mutt before 2.3.2 has an infinite loop in data_object_to_stream in crypt-gpgme.c.

CVSS3: 3.7
nvd
3 месяца назад

mutt before 2.3.2 has an infinite loop in data_object_to_stream in crypt-gpgme.c.

CVSS3: 3.7
debian
3 месяца назад

mutt before 2.3.2 has an infinite loop in data_object_to_stream in cry ...

CVSS3: 3.7
github
3 месяца назад

mutt before 2.3.2 has an infinite loop in data_object_to_stream in crypt-gpgme.c.

suse-cvrf
около 2 месяцев назад

Security update for mutt

EPSS

Процентиль: 10%
0.00201
Низкий

3.7 Low

CVSS3