NULL Pointer Dereference Vulnerability in Mutt Email Client by Mutt Developers
CVE-2026-43864

2.5LOW

Key Information:

Vendor

Mutt

Status
Vendor
CVE Published:
4 May 2026

What is CVE-2026-43864?

Mutt, a widely used email client, is impacted by a NULL pointer dereference issue present in versions before 2.3.2. This vulnerability can lead to application crashes, potentially disrupting users' email functionality. It is crucial for users and administrators to update to the latest version to mitigate this security risk and ensure stable and secure operation.

Affected Version(s)

mutt 0 < 2.3.2

References

CVSS V3.1

Score:
2.5
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.