Количество 24
Количество 24

RLSA-2021:4181
Moderate: mutt security, bug fix, and enhancement update
ELSA-2021-4181
ELSA-2021-4181: mutt security, bug fix, and enhancement update (MODERATE)

CVE-2021-3181
rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a denial of service (mailbox unavailability) by sending email messages with sequences of semicolon characters in RFC822 address fields (aka terminators of empty groups). A small email message from the attacker can cause large memory consumption, and the victim may then be unable to see email messages from other persons.

CVE-2021-3181
rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a denial of service (mailbox unavailability) by sending email messages with sequences of semicolon characters in RFC822 address fields (aka terminators of empty groups). A small email message from the attacker can cause large memory consumption, and the victim may then be unable to see email messages from other persons.

CVE-2021-3181
rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a denial of service (mailbox unavailability) by sending email messages with sequences of semicolon characters in RFC822 address fields (aka terminators of empty groups). A small email message from the attacker can cause large memory consumption, and the victim may then be unable to see email messages from other persons.
CVE-2021-3181
rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a deni ...

CVE-2020-28896
Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The connection was not properly closed, and the code could continue attempting to authenticate. This could result in authentication credentials being exposed on an unencrypted connection, or to a machine-in-the-middle.

CVE-2020-28896
Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The connection was not properly closed, and the code could continue attempting to authenticate. This could result in authentication credentials being exposed on an unencrypted connection, or to a machine-in-the-middle.

CVE-2020-28896
Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The connection was not properly closed, and the code could continue attempting to authenticate. This could result in authentication credentials being exposed on an unencrypted connection, or to a machine-in-the-middle.
CVE-2020-28896
Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $s ...

openSUSE-SU-2021:0162-1
Security update for mutt

openSUSE-SU-2021:0161-1
Security update for mutt

SUSE-SU-2021:0196-1
Security update for mutt

SUSE-SU-2021:0195-1
Security update for mutt
GHSA-prp6-7gc9-4jmw
rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a denial of service (mailbox unavailability) by sending email messages with sequences of semicolon characters in RFC822 address fields (aka terminators of empty groups). A small email message from the attacker can cause large memory consumption, and the victim may then be unable to see email messages from other persons.

BDU:2021-03747
Уязвимость компонента rfc822.c почтового клиента Mutt, связанная с неконтролируемым расходом ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

openSUSE-SU-2020:2141-1
Security update for mutt

openSUSE-SU-2020:2128-1
Security update for mutt

SUSE-SU-2020:3632-1
Security update for mutt

SUSE-SU-2020:3568-1
Security update for mutt
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | RLSA-2021:4181 Moderate: mutt security, bug fix, and enhancement update | больше 3 лет назад | ||
ELSA-2021-4181 ELSA-2021-4181: mutt security, bug fix, and enhancement update (MODERATE) | больше 3 лет назад | |||
![]() | CVE-2021-3181 rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a denial of service (mailbox unavailability) by sending email messages with sequences of semicolon characters in RFC822 address fields (aka terminators of empty groups). A small email message from the attacker can cause large memory consumption, and the victim may then be unable to see email messages from other persons. | CVSS3: 6.5 | 2% Низкий | больше 4 лет назад |
![]() | CVE-2021-3181 rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a denial of service (mailbox unavailability) by sending email messages with sequences of semicolon characters in RFC822 address fields (aka terminators of empty groups). A small email message from the attacker can cause large memory consumption, and the victim may then be unable to see email messages from other persons. | CVSS3: 6.5 | 2% Низкий | больше 4 лет назад |
![]() | CVE-2021-3181 rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a denial of service (mailbox unavailability) by sending email messages with sequences of semicolon characters in RFC822 address fields (aka terminators of empty groups). A small email message from the attacker can cause large memory consumption, and the victim may then be unable to see email messages from other persons. | CVSS3: 6.5 | 2% Низкий | больше 4 лет назад |
CVE-2021-3181 rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a deni ... | CVSS3: 6.5 | 2% Низкий | больше 4 лет назад | |
![]() | CVE-2020-28896 Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The connection was not properly closed, and the code could continue attempting to authenticate. This could result in authentication credentials being exposed on an unencrypted connection, or to a machine-in-the-middle. | CVSS3: 5.3 | 0% Низкий | больше 4 лет назад |
![]() | CVE-2020-28896 Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The connection was not properly closed, and the code could continue attempting to authenticate. This could result in authentication credentials being exposed on an unencrypted connection, or to a machine-in-the-middle. | CVSS3: 5.3 | 0% Низкий | больше 4 лет назад |
![]() | CVE-2020-28896 Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The connection was not properly closed, and the code could continue attempting to authenticate. This could result in authentication credentials being exposed on an unencrypted connection, or to a machine-in-the-middle. | CVSS3: 5.3 | 0% Низкий | больше 4 лет назад |
CVE-2020-28896 Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $s ... | CVSS3: 5.3 | 0% Низкий | больше 4 лет назад | |
![]() | openSUSE-SU-2021:0162-1 Security update for mutt | 2% Низкий | больше 4 лет назад | |
![]() | openSUSE-SU-2021:0161-1 Security update for mutt | 2% Низкий | больше 4 лет назад | |
![]() | SUSE-SU-2021:0196-1 Security update for mutt | 2% Низкий | больше 4 лет назад | |
![]() | SUSE-SU-2021:0195-1 Security update for mutt | 2% Низкий | больше 4 лет назад | |
GHSA-prp6-7gc9-4jmw rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a denial of service (mailbox unavailability) by sending email messages with sequences of semicolon characters in RFC822 address fields (aka terminators of empty groups). A small email message from the attacker can cause large memory consumption, and the victim may then be unable to see email messages from other persons. | CVSS3: 6.5 | 2% Низкий | около 3 лет назад | |
![]() | BDU:2021-03747 Уязвимость компонента rfc822.c почтового клиента Mutt, связанная с неконтролируемым расходом ресурсов, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 6.5 | 2% Низкий | больше 4 лет назад |
![]() | openSUSE-SU-2020:2141-1 Security update for mutt | 0% Низкий | больше 4 лет назад | |
![]() | openSUSE-SU-2020:2128-1 Security update for mutt | 0% Низкий | больше 4 лет назад | |
![]() | SUSE-SU-2020:3632-1 Security update for mutt | 0% Низкий | больше 4 лет назад | |
![]() | SUSE-SU-2020:3568-1 Security update for mutt | 0% Низкий | больше 4 лет назад |
Уязвимостей на страницу