CVE-1999-0940: Buffer Overflow
Buffer overflow in mutt mail client allows remote attackers to execute commands via malformed MIME messages.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
Muttfrom your environment.Uninstall Mutt until a security update is available to eliminate the vulnerable code path that allows remote command execution via malformed MIME messages.
- Compensating control
At the mail gateway/MTA, filter, quarantine, or block incoming MIME/multipart messages and reject or strip messages with malformed or suspicious MIME headers/structure to prevent delivery of exploit payloads to Mutt users.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0940?
CVE-1999-0940 is considered high severity due to its ability to allow remote attackers to execute arbitrary commands.
How do I fix CVE-1999-0940?
To fix CVE-1999-0940, upgrade to the latest version of the mutt mail client where this vulnerability has been patched.
What are the potential risks of CVE-1999-0940?
The potential risks of CVE-1999-0940 include unauthorized access and control over the affected systems due to command execution.
Which versions of the Mutt mail client are affected by CVE-1999-0940?
All versions of the Mutt mail client prior to the patch for CVE-1999-0940 are affected.
Can CVE-1999-0940 be exploited remotely?
Yes, CVE-1999-0940 can be exploited remotely through specially crafted malformed MIME messages.