Show filters
50 Total Results
Displaying 11-20 of 50
Sort by:
Attacker Value
Unknown

CVE-2020-14154

Disclosure Date: June 15, 2020 (last updated February 21, 2025)
Mutt before 1.14.3 proceeds with a connection even if, in response to a GnuTLS certificate prompt, the user rejects an expired intermediate certificate.
Attacker Value
Unknown

CVE-2020-14093

Disclosure Date: June 15, 2020 (last updated February 21, 2025)
Mutt before 1.14.3 allows an IMAP fcc/postpone man-in-the-middle attack via a PREAUTH response.
Attacker Value
Unknown

CVE-2005-2351

Disclosure Date: November 01, 2019 (last updated November 27, 2024)
Mutt before 1.5.20 patch 7 allows an attacker to cause a denial of service via a series of requests to mutt temporary files.
Attacker Value
Unknown

CVE-2018-14351

Disclosure Date: July 17, 2018 (last updated November 27, 2024)
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/command.c mishandles a long IMAP status mailbox literal count size.
Attacker Value
Unknown

CVE-2018-14352

Disclosure Date: July 17, 2018 (last updated November 27, 2024)
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap_quote_string in imap/util.c does not leave room for quote characters, leading to a stack-based buffer overflow.
Attacker Value
Unknown

CVE-2018-14349

Disclosure Date: July 17, 2018 (last updated November 27, 2024)
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/command.c mishandles a NO response without a message.
Attacker Value
Unknown

CVE-2018-14354

Disclosure Date: July 17, 2018 (last updated November 27, 2024)
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. They allow remote IMAP servers to execute arbitrary commands via backquote characters, related to the mailboxes command associated with a manual subscription or unsubscription.
Attacker Value
Unknown

CVE-2018-14355

Disclosure Date: July 17, 2018 (last updated November 27, 2024)
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/util.c mishandles ".." directory traversal in a mailbox name.
Attacker Value
Unknown

CVE-2018-14358

Disclosure Date: July 17, 2018 (last updated November 27, 2024)
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/message.c has a stack-based buffer overflow for a FETCH response with a long RFC822.SIZE field.
Attacker Value
Unknown

CVE-2018-14363

Disclosure Date: July 17, 2018 (last updated November 27, 2024)
An issue was discovered in NeoMutt before 2018-07-16. newsrc.c does not properly restrict '/' characters that may have unsafe interaction with cache pathnames.