Vulnerability index

Browse CVEs

16 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Mutt CRITICAL 9.1
CVE-2021-32055

Mutt 1.11.0 through 2.0.x before 2.0.7 (and NeoMutt 2019-10-25 through 2021-05-04) has a $imap_qresync issue in which imap/util.c has an out-of-bound…

Fix: 2.0.7+
Fix from $2,300 2021-05-05
Mutt MEDIUM 5.0
CVE-2014-0467EPSS 5%

Buffer overflow in copy.c in Mutt before 1.5.23 allows remote attackers to cause a denial of service (crash) via a crafted RFC2047 header line, relat…

Fix: after 1.5.22
Fix from $1,600 2014-03-14
Mutt MEDIUM 5.8
CVE-2011-1429

Mutt does not verify that the smtps server hostname matches the domain name of the subject of an X.509 certificate, which allows man-in-the-middle at…

Patch available
Fix from $1,600 2011-03-16
Mutt MEDIUM 6.8
CVE-2009-3765

mutt_ssl.c in mutt 1.5.19 and 1.5.20, when OpenSSL is used, does not properly handle a '\0' character in a domain name in the subject's Common Name (…

Mitigation only
Fix from $1,600 2009-10-23
Mutt MEDIUM 6.8
CVE-2009-3766

mutt_ssl.c in mutt 1.5.16 and other versions before 1.5.19, when OpenSSL is used, does not verify the domain name in the subject's Common Name (CN) f…

Fix: 1.5.19+
Fix from $1,600 2009-10-23
Mutt MEDIUM 6.8
CVE-2009-1390

Mutt 1.5.19, when linked against (1) OpenSSL (mutt_ssl.c) or (2) GnuTLS (mutt_ssl_gnutls.c), allows connections when only one TLS certificate in the …

Patch available
Fix from $1,600 2009-06-16
Mutt MEDIUM 5.0
CVE-2007-1268

Mutt 1.5.13 and earlier does not properly use the --status-fd argument when invoking GnuPG, which prevents Mutt from visually distinguishing between …

Fix: after 1.5.13
Fix from $1,600 2007-03-06
Mutt HIGH 7.5
CVE-2006-3242EPSS 6%

Stack-based buffer overflow in the browse_get_namespace function in imap/browse.c of Mutt 1.4.2.1 and earlier allows remote attackers to cause a deni…

Mitigation only
Fix from $1,950 2006-06-27
Mutt HIGH 7.5
CVE-2005-2642

Buffer overflow in the mutt_decode_xbit function in Handler.c for Mutt 1.5.10 allows remote attackers to execute arbitrary code, possibly due to inte…

Patch available
Fix from $1,950 2005-08-23
Mutt HIGH 7.5
CVE-2004-0078EPSS 5%

Buffer overflow in the index menu code (menu_pad_string of menu.c) for Mutt 1.4.1 and earlier allows remote attackers to cause a denial of service (c…

Patch available
Fix from $1,950 2004-03-03
Mutt HIGH 7.5
CVE-2003-0299

The IMAP Client, as used in mutt 1.4.1 and Balsa 2.0.10, allows remote malicious IMAP servers to cause a denial of service and possibly execute arbit…

Mitigation only
Fix from $1,950 2003-06-16
Mutt HIGH 7.5
CVE-2003-0167

Multiple off-by-one buffer overflows in the IMAP capability for Mutt 1.3.28 and earlier, and Balsa 1.2.4 and earlier, allow a remote malicious IMAP s…

Patch available
Fix from $1,950 2003-04-02
Mutt HIGH 7.5
CVE-2003-0140

Buffer overflow in Mutt 1.4.0 and possibly earlier versions, 1.5.x up to 1.5.3, and other programs that use Mutt code such as Balsa before 2.0.10, al…

Patch available
Fix from $1,950 2003-03-24
Mutt HIGH 7.5
CVE-2002-0001

Vulnerability in RFC822 address parser in mutt before 1.2.5.1 and mutt 1.3.x before 1.3.25 allows remote attackers to execute arbitrary commands via …

Fix: after 1.3.25
Fix from $1,950 2002-02-27
Mutt Mail Client HIGH 7.5
CVE-1999-0940

Buffer overflow in mutt mail client allows remote attackers to execute commands via malformed MIME messages.

Mitigation only
Fix from $1,950 1999-09-27
Mutt HIGH 7.5
CVE-1999-0941

Mutt mail client allows a remote attacker to execute commands via shell metacharacters.

Mitigation only
Fix from $1,950 1998-07-28