Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

Search CVE reports


Toggle filters

11 – 20 of 38 results


CVE-2018-14363

Medium priority
Vulnerable

An issue was discovered in NeoMutt before 2018-07-16. newsrc.c does not properly restrict '/' characters that may have unsafe interaction with cache pathnames.

1 affected packages

neomutt

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
neomutt Not affected Not affected Not affected Vulnerable Not in release
Show less packages

CVE-2018-14361

Medium priority
Vulnerable

An issue was discovered in NeoMutt before 2018-07-16. nntp.c proceeds even if memory allocation fails for messages data.

1 affected packages

neomutt

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
neomutt Not affected Not affected Not affected Vulnerable Not in release
Show less packages

CVE-2018-14360

Medium priority
Vulnerable

An issue was discovered in NeoMutt before 2018-07-16. nntp_add_group in newsrc.c has a stack-based buffer overflow because of incorrect sscanf usage.

1 affected packages

neomutt

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
neomutt Not affected Not affected Not affected Vulnerable Not in release
Show less packages

CVE-2018-14362

Medium priority

Some fixes available 15 of 18

An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. pop.c does not forbid characters that may have unsafe interaction with message-cache pathnames, as demonstrated by a '/' character.

2 affected packages

mutt, neomutt

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mutt Fixed Fixed Fixed Fixed Fixed
neomutt Not affected Not affected Not affected Vulnerable Not in release
Show less packages

CVE-2018-14359

Medium priority

Some fixes available 15 of 18

An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. They have a buffer overflow via base64 data.

2 affected packages

mutt, neomutt

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mutt Fixed Fixed Fixed Fixed Fixed
neomutt Not affected Not affected Not affected Vulnerable Not in release
Show less packages

CVE-2018-14358

Medium priority

Some fixes available 15 of 18

An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/message.c has a stack-based buffer overflow for a FETCH response with a long RFC822.SIZE field.

2 affected packages

mutt, neomutt

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mutt Fixed Fixed Fixed Fixed Fixed
neomutt Not affected Not affected Not affected Vulnerable Not in release
Show less packages

CVE-2018-14357

Medium priority

Some fixes available 15 of 18

An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. They allow remote IMAP servers to execute arbitrary commands via backquote characters, related to the mailboxes command associated with an automatic subscription.

2 affected packages

mutt, neomutt

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mutt Fixed Fixed Fixed Fixed Fixed
neomutt Not affected Not affected Not affected Vulnerable Not in release
Show less packages

CVE-2018-14356

Medium priority

Some fixes available 15 of 18

An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. pop.c mishandles a zero-length UID.

2 affected packages

mutt, neomutt

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mutt Fixed Fixed Fixed Fixed Fixed
neomutt Not affected Not affected Not affected Vulnerable Not in release
Show less packages

CVE-2018-14355

Medium priority

Some fixes available 15 of 18

An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/util.c mishandles ".." directory traversal in a mailbox name.

2 affected packages

mutt, neomutt

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mutt Fixed Fixed Fixed Fixed Fixed
neomutt Not affected Not affected Not affected Vulnerable Not in release
Show less packages

CVE-2018-14354

Medium priority

Some fixes available 15 of 18

An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. They allow remote IMAP servers to execute arbitrary commands via backquote characters, related to the mailboxes command associated with a manual...

2 affected packages

mutt, neomutt

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mutt Fixed Fixed Fixed Fixed Fixed
neomutt Not affected Not affected Not affected Vulnerable Not in release
Show less packages