CVE-2018-14360: Buffer Overflow
Published Jul 17, 2018
·Updated
An issue was discovered in NeoMutt before 2018-07-16. nntpaddgroup in newsrc.c has a stack-based buffer overflow because of incorrect sscanf usage.
Affected Software
5 affected componentsFixes available
Debian Debian Linux=8.0
Debian Debian Linux=9.0
neomutt neomutt<20180716
debian/mutt
2.0.5-4.1+deb11u32.2.12-0.1~deb12u12.2.9-1+deb12u12.2.13-1
debian/neomutt
20201127+dfsg.1-1.220220429+dfsg1-4.120250404+dfsg-2
Remediation
Event History
Jul 17, 2018
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Jan 15, 2025
Data Sourced
via Launchpad·05:07 PM
Description
Jan 19, 2025
Data Sourced
via Ubuntu·05:07 PM
RemedyDescriptionSeverityAffected Software
Apr 23, 2025
Data Sourced
via Debian·12:12 AM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-14360?
The severity of CVE-2018-14360 is critical with a score of 9.8.
2
What is the affected software for CVE-2018-14360?
The affected software for CVE-2018-14360 is NeoMutt versions up to exclusive 20180716 and Debian Linux versions 8.0 and 9.0.
3
How can I fix CVE-2018-14360 in NeoMutt?
To fix CVE-2018-14360 in NeoMutt, update to version 20180716 or later.
4
How can I fix CVE-2018-14360 in Debian Linux?
To fix CVE-2018-14360 in Debian Linux, update to version 1.10.1-2.1+deb10u6 or later for Debian 10, and update to version 2.0.5-4.1+deb11u3 or later for Debian 11.
5
Where can I find more information about CVE-2018-14360?
You can find more information about CVE-2018-14360 in the following references: [link1], [link2], [link3].