Vulnerabilities in Mutt
10 resultsVexday analysis
Mutt possui 3 vulnerabilidades registradas na base, nenhuma sob exploração ativa confirmada e nenhuma crítica pelo CVSS. A fraqueza dominante (CWE-475 — Undefined Behavior) sugere problemas de implementação, sem evidência de atividade recente de disclosure, indicando risco baixo a moderado no curto prazo.
CVE-2022-1328MEDIUMBuffer Overflow in uudecoder in Mutt affecting all versions starting from 0.94.13 before 2.2.3 allows read past end of input lineEPSS 1.7%CVE-2023-4874MEDIUMUndefined Behavior for Input to API in MuttEPSS 0.7%CVE-2023-4875LOWUndefined Behavior for Input to API in MuttEPSS 0.5%CVE-2005-2351—Mutt before 1.5.20 patch 7 allows an attacker to cause a denial of service via a series of requests to mutt temporary files.EPSS 0.4%CVE-2026-43863LOWmutt before 2.3.2 has an infinite loop in data_object_to_stream in crypt-gpgme.c.EPSS 0.2%CVE-2026-43862LOWIn mutt before 2.3.2, the imap_auth_gss security level is mishandled.EPSS 0.2%CVE-2026-43860LOWmutt before 2.3.2 sometimes truncates the hash_passwd by one byte for IMAP auth_cram MD5 digest.EPSS 0.2%CVE-2026-43859LOWmutt before 2.3.2 sometimes uses strfcpy instead of memcpy for the IMAP auth_cram MD5 digest.EPSS 0.2%CVE-2026-43861LOWmutt before 2.3.2 does not check for '\0' in url_pct_decode.EPSS 0.2%CVE-2026-43864LOWmutt before 2.3.2 has a show_sig_summary NULL pointer dereference.EPSS 0.1%