Explore top 10 tips to secure your open-source projects now. Read More

×
Alerts This Week
Warning Icon 1 483
Alerts This Week
Warning Icon 1 483

Scientific Linux SL6: SLSA-2014:0304-1 Important Mutt Buffer Overflow

Scientific Large Esm H446
Important: mutt security update
Date: Mon, 17 Mar 2014 18:51:33 +0000
Reply-To: scientific-linux-users@
Sender: Security Errata for Scientific Linux
 
From: Pat Riehecky 
Subject: Security ERRATA Important: mutt on SL6.x i386/x86_64
MIME-Version: 1.0

Synopsis: Important: mutt security update
Advisory ID: SLSA-2014:0304-1
Issue Date: 2014-03-17
CVE Numbers: CVE-2014-0467
--

A heap-based buffer overflow flaw was found in the way mutt processed
certain email headers. A remote attacker could use this flaw to send an
email with specially crafted headers that, when processed, could cause
mutt to crash or, potentially, execute arbitrary code with the permissions
of the user running mutt. (CVE-2014-0467)

All running instances of mutt must be restarted for this update to take
effect.
--

SL6
 x86_64
 mutt-1.5.20-4.20091214hg736b6a.el6_5.x86_64.rpm
 mutt-debuginfo-1.5.20-4.20091214hg736b6a.el6_5.x86_64.rpm
 i386
 mutt-1.5.20-4.20091214hg736b6a.el6_5.i686.rpm
 mutt-debuginfo-1.5.20-4.20091214hg736b6a.el6_5.i686.rpm

- Scientific Linux Development Team