Buffer Overflow in Mutt Email Client by Mutt, Inc.
CVE-2014-9116
Currently unrated
Key Information:
- Vendor
- Suse
- Vendor
- CVE Published:
- 2 December 2014
Summary
The Mutt email client version 1.5.23 is susceptible to a buffer overflow vulnerability triggered by improperly handled newline characters in header fields. Attackers can exploit this flaw by crafting malicious email headers containing empty bodies, resulting in a denial-of-service condition due to heap-based memory corruption within the mutt_substrdup
function. This can lead to application crashes, disrupting email service for users. Users are urged to apply patches and updates immediately to mitigate potential risks.
References
Timeline
Vulnerability published
Vulnerability Reserved