CVE-2007-2683: Buffer Overflow
Published May 15, 2007
·Updated
Buffer overflow in Mutt 1.4.2 might allow local users to execute arbitrary code via "&" characters in the GECOS field, which triggers the overflow during alias expansion.
Affected Software
1 affected component
Mutt Mutt=1.4.2
Event History
May 15, 2007
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-2683?
CVE-2007-2683 has a moderate severity due to the potential for local users to execute arbitrary code.
2
How do I fix CVE-2007-2683?
To fix CVE-2007-2683, upgrade Mutt to version 1.5.17 or later.
3
Who is affected by CVE-2007-2683?
Local users of Mutt version 1.4.2 are affected by CVE-2007-2683.
4
What type of vulnerability is CVE-2007-2683?
CVE-2007-2683 is a buffer overflow vulnerability.
5
What can exploit CVE-2007-2683?
CVE-2007-2683 can be exploited via crafted input using "&" characters in the GECOS field during alias expansion.