NeoMutt 20200320

CPE Details

NeoMutt 20200320
20200320
2020-05-18
11h47 +00:00
2020-05-18
11h47 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:neomutt:neomutt:20200320:*:*:*:*:*:*:*

Informations

Vendor

neomutt

Product

neomutt

Version

20200320

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2021-32055 2021-05-05 13h06 +00:00 Mutt 1.11.0 through 2.0.x before 2.0.7 (and NeoMutt 2019-10-25 through 2021-05-04) has a $imap_qresync issue in which imap/util.c has an out-of-bounds read in situations where an IMAP sequence set ends with a comma. NOTE: the $imap_qresync setting for QRESYNC is not enabled by default.
9.1
Critical
CVE-2020-14954 2020-06-21 14h55 +00:00 Mutt before 1.14.4 and NeoMutt before 2020-06-19 have a STARTTLS buffering issue that affects IMAP, SMTP, and POP3. When a server sends a "begin TLS" response, the client reads additional data (e.g., from a man-in-the-middle attacker) and evaluates it in a TLS context, aka "response injection."
5.9
Medium