Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Slackware 14.1 SSA:2014-071-01 Critical: Mutt Buffer Overflow Fix

slackware
Calendar Grey March 13, 2014
Dist Slackware Esm H88
A critical update for mutt packages has been issued on Slackware to address a severe buffer overflow vulnerability. Users are urged to update their versions promptly
New mutt packages are available for Slackware 13.37, 14.0, 14.1, and -current to fix a security issue

Summary

Here are the details from the Slackware 14.1 ChangeLog: patches/packages/mutt-1.5.23-i486-1_slack14.1.txz: Upgraded. This update fixes a buffer overflow where malformed RFC2047 header lines could result in denial of service or potentially the execution of arbitrary code as the user running mutt. For more information, see: https://www.cve.org/CVERecord?id=CVE-2014-0467 (* Security fix *)

Where Find New Packages

Thanks to the friendly folks at the OSU Open Source Lab (https://osuosl.org/) for donating FTP and rsync hosting to the Slackware project! :-)
Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you.
Updated package for Slackware 13.37:
Updated package for Slackware x86_64 13.37:
Updated package for Slackware 14.0:
Updated package for Slackware x86_64 14.0:
Updated package for Slackware 14.1:
Updated package for Slackware x86_64 14.1:
Updated package for Slackware -current:
Updated package for Slackware x86_64 -current:

MD5 Signatures

Slackware 13.37 package: f351ecc1fc4d457e18a9f278eafdf121 mutt-1.5.23-i486-1_slack13.37.txz
Slackware x86_64 13.37 package: 570a19634d594bf2cff3f578a1d31cc4 mutt-1.5.23-x86_64-1_slack13.37.txz
Slackware 14.0 package: 3ffedf3c5b93f7d5a3b957c1d3be95f2 mutt-1.5.23-i486-1_slack14.0.txz
Slackware x86_64 14.0 package: 947524f7171b45a8dbc54997d8d1a557 mutt-1.5.23-x86_64-1_slack14.0.txz
Slackware 14.1 package: b39e508013fe170794d31058af661fe5 mutt-1.5.23-i486-1_slack14.1.txz
Slackware x86_64 14.1 package: b8a5be46be3030dd3c8d48d7cfa6d1b8 mutt-1.5.23-x86_64-1_slack14.1.txz
Slackware -current package: 630aef426f7c241d21fe41469626f74c n/mutt-1.5.23-i486-1.txz
Slackware x86_64 -current package: a4a82751fda1b0b2b9934bdbcb016beb n/mutt-1.5.23-x86_64-1.txz

Severity
critical
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Installation Instructions

Installation instructions: Upgrade the package as root: # upgradepkg mutt-1.5.23-i486-1_slack14.1.txz

Related News

Your message here