INFSA-2024:2290: mutt security update

Information about definition

Identificator: INFSA-2024:2290

Type: security

Release date: 2024-12-27 09:33:20 UTC

Information about package

Mutt is a low resource, highly configurable, text-based MIME e-mail client. Mutt supports most e-mail storing formats, such as mbox and Maildir, as well as most protocols, including POP3 and IMAP.

Vulnerabilities description

  • CVE-2023-4874

    Null pointer dereference when viewing a specially crafted email in Mutt >1.5.2 <2.2.12

  • CVE-2023-4875

    Null pointer dereference when composing from a specially crafted draft message in Mutt >1.5.2 <2.2.12

Severity level

CVE Score CVSS 2.0 Score CVSS 3.x Score CVSS 4.0
NIST — CVE-2023-4874
no information 5.7 no information
NIST — CVE-2023-4875
no information 5.7 no information
Critical, important, moderate, low

Updated packages