Alerts This Week
Warning Icon 1 540
Alerts This Week
Warning Icon 1 540

Mageia 7: 2021-0070 Moderate: Mutt Denial of Service Advisory

mageia
Calendar Grey February 5, 2021
Dist Mageia Esm H88
A new security patch has been issued for Mutt in Mageia to fix a denial of service flaw. Find more information regarding the update within.
It was discovered that Mutt incorrectly handled certain email messages

Summary

It was discovered that Mutt incorrectly handled certain email messages. An attacker could possibly use this issue to cause a denial of service because rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a denial of service (mailbox unavailability) by sending email messages with sequences of semicolon characters in RFC822 address fields (aka terminators of empty groups). (CVE-2021-3181).
mutt-1.11.4 has been patched for Mageia 7.

References

- https://bugs.mageia.org/show_bug.cgi?id=28159

- https://www.openwall.com/lists/oss-security/2021/01/19/10

- https://www.openwall.com/lists/oss-security/2021/01/17/2

- https://lists.debian.org/debian-lts-announce/2021/01/msg00017.html

- https://ubuntu.com/security/notices/USN-4703-1

- https://www.cve.org/CVERecord?id=CVE-2021-3181

Resolution

SRPMS

- 7/core/mutt-1.11.4-1.5.mga7

Severity
important
Lowest
Low
Medium
High
Critical

Publication date: 05 Feb 2021
URL: https://advisories.mageia.org/MGASA-2021-0070.html
Type: security
CVE: CVE-2021-3181

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here