Information on source package mutt

Available versions

ReleaseVersion
jessie1.5.23-3+deb8u7
stretch1.7.2-1+deb9u7
stretch (security)1.7.2-1+deb9u6
buster1.10.1-2.1+deb10u7
bullseye2.0.5-4.1+deb11u3
bookworm2.2.12-0.1~deb12u1
bookworm (security)2.2.9-1+deb12u1
trixie2.2.13-1
sid2.2.13-1

Open unimportant issues

BugjessiestretchbusterbullseyebookwormtrixiesidDescription
TEMP-0775199-D05A9Evulnerablefixedfixedfixedfixedfixedfixedsmime_keys: insecure use of /tmp
CVE-2024-49395vulnerablevulnerablevulnerablevulnerablevulnerablevulnerablevulnerableIn mutt and neomutt, PGP encryption does not use the --hidden-recipien ...
CVE-2024-49394vulnerablevulnerablevulnerablevulnerablevulnerablevulnerablevulnerableIn mutt and neomutt the In-Reply-To email header field is not protecte ...
CVE-2024-49393vulnerablevulnerablevulnerablevulnerablevulnerablevulnerablevulnerableIn neomutt and mutt, the To and Cc email headers are not validated by ...
CVE-2020-14154vulnerablevulnerablefixedfixedfixedfixedfixedMutt before 1.14.3 proceeds with a connection even if, in response to ...
CVE-2007-1268vulnerablevulnerablevulnerablevulnerablevulnerablevulnerablevulnerableMutt 1.5.13 and earlier does not properly use the --status-fd argument ...

Resolved issues

BugDescription
CVE-2023-4875Null pointer dereference when composing from a specially crafted draft ...
CVE-2023-4874Null pointer dereference when viewing a specially crafted email in Mut ...
CVE-2022-1328Buffer Overflow in uudecoder in Mutt affecting all versions starting f ...
CVE-2021-32055Mutt 1.11.0 through 2.0.x before 2.0.7 (and NeoMutt 2019-10-25 through ...
CVE-2021-3181rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a deni ...
CVE-2020-28896Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $s ...
CVE-2020-14954Mutt before 1.14.4 and NeoMutt before 2020-06-19 have a STARTTLS buffe ...
CVE-2020-14093Mutt before 1.14.3 allows an IMAP fcc/postpone man-in-the-middle attac ...
CVE-2018-14363An issue was discovered in NeoMutt before 2018-07-16. newsrc.c does no ...
CVE-2018-14362An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018- ...
CVE-2018-14361An issue was discovered in NeoMutt before 2018-07-16. nntp.c proceeds ...
CVE-2018-14360An issue was discovered in NeoMutt before 2018-07-16. nntp_add_group i ...
CVE-2018-14359An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018- ...
CVE-2018-14358An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018- ...
CVE-2018-14357An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018- ...
CVE-2018-14356An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018- ...
CVE-2018-14355An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018- ...
CVE-2018-14354An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018- ...
CVE-2018-14353An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018- ...
CVE-2018-14352An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018- ...
CVE-2018-14351An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018- ...
CVE-2018-14350An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018- ...
CVE-2018-14349An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018- ...
CVE-2014-9116The write_one_header function in mutt 1.5.23 does not properly handle ...
CVE-2014-0467Buffer overflow in copy.c in Mutt before 1.5.23 allows remote attacker ...
CVE-2011-1429Mutt does not verify that the smtps server hostname matches the domain ...
CVE-2009-3766mutt_ssl.c in mutt 1.5.16 and other versions before 1.5.19, when OpenS ...
CVE-2009-3765mutt_ssl.c in mutt 1.5.19 and 1.5.20, when OpenSSL is used, does not p ...
CVE-2009-1390Mutt 1.5.19, when linked against (1) OpenSSL (mutt_ssl.c) or (2) GnuTL ...
CVE-2007-2683Buffer overflow in Mutt 1.4.2 might allow local users to execute arbit ...
CVE-2007-1558The APOP protocol allows remote attackers to guess the first 3 charact ...
CVE-2006-5298The mutt_adv_mktemp function in the Mutt mail client 1.5.12 and earlie ...
CVE-2006-5297Race condition in the safe_open function in the Mutt mail client 1.5.1 ...
CVE-2006-3242Stack-based buffer overflow in the browse_get_namespace function in im ...
CVE-2005-2642Buffer overflow in the mutt_decode_xbit function in Handler.c for Mutt ...
CVE-2005-2351Mutt before 1.5.20 patch 7 allows an attacker to cause a denial of ser ...
CVE-2004-0078Buffer overflow in the index menu code (menu_pad_string of menu.c) for ...
CVE-2003-0167Multiple off-by-one buffer overflows in the IMAP capability for Mutt 1 ...
CVE-2003-0140Buffer overflow in Mutt 1.4.0 and possibly earlier versions, 1.5.x up ...

Security announcements

DSA / DLADescription
DLA-3574-1mutt - security update
ELA-949-1mutt - security update
DSA-5494-1mutt - security update
ELA-607-1mutt - security update
DLA-2999-1mutt - security update
DSA-4838-1mutt - security update
DLA-2529-1mutt - security update
ELA-349-1mutt - security update
ELA-325-1mutt - security update
DLA-2472-1mutt - security update
DLA-2268-2mutt - regression update
DLA-2268-1mutt - security update
DSA-4707-1mutt - security update
DSA-4277-1mutt - security update
DLA-1455-1mutt - security update
ELA-22-1mutt - security update
DLA-100-1mutt - security update
DSA-3083-1mutt - security update
DSA-2874-1mutt - security update
DSA-1108mutt - buffer overflow
DSA-274mutt - buffer overflow
DSA-268mutt - buffer overflow

Search for package or bug name: Reporting problems