Описание
Security update for mutt
This update for mutt fixes the following issue:
- CVE-2021-3181: Fixed a memory leak in recipient parsing (bsc#1181221).
This update was imported from the SUSE:SLE-15:Update update project.
Список пакетов
openSUSE Leap 15.1
mutt-1.10.1-lp151.2.15.1
mutt-doc-1.10.1-lp151.2.15.1
mutt-lang-1.10.1-lp151.2.15.1
Ссылки
- E-Mail link for openSUSE-SU-2021:0161-1
- SUSE Security Ratings
- SUSE Bug 1181221
- SUSE CVE CVE-2021-3181 page
Описание
rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a denial of service (mailbox unavailability) by sending email messages with sequences of semicolon characters in RFC822 address fields (aka terminators of empty groups). A small email message from the attacker can cause large memory consumption, and the victim may then be unable to see email messages from other persons.
Затронутые продукты
openSUSE Leap 15.1:mutt-1.10.1-lp151.2.15.1
openSUSE Leap 15.1:mutt-doc-1.10.1-lp151.2.15.1
openSUSE Leap 15.1:mutt-lang-1.10.1-lp151.2.15.1
Ссылки
- CVE-2021-3181
- SUSE Bug 1181221
- SUSE Bug 1181505