FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2014-0467

This CVE name corresponds to:

Entered Topic
2014-03-14 mutt -- denial of service, potential remote code execution

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type Candidate
Name CVE-2014-0467
Phase Assigned(20131219)

Description

Buffer overflow in copy.c in Mutt before 1.5.23 allows remote attackers to cause a denial of service (crash) via a crafted RFC2047 header line, related to address expansion.

References

Source Reference
CONFIRM http://www.mutt.org/doc/devel/ChangeLog
DEBIAN DSA-2874
REDHAT RHSA-2014:0304
SUSE openSUSE-SU-2014:0434
SUSE openSUSE-SU-2014:0436
SUSE SUSE-SU-2014:0471
UBUNTU USN-2147-1
SECTRACK 1029919