Buffer Overflow in Mutt Email Client by Mutt, Inc.
CVE-2014-9116

Currently unrated

Key Information:

Vendor
Suse
Vendor
CVE Published:
2 December 2014

Summary

The Mutt email client version 1.5.23 is susceptible to a buffer overflow vulnerability triggered by improperly handled newline characters in header fields. Attackers can exploit this flaw by crafting malicious email headers containing empty bodies, resulting in a denial-of-service condition due to heap-based memory corruption within the mutt_substrdup function. This can lead to application crashes, disrupting email service for users. Users are urged to apply patches and updates immediately to mitigate potential risks.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.