CVE-2022-1328: Buffer Overflow
Published Apr 14, 2022
·Updated
Buffer Overflow in uudecoder in Mutt affecting all versions starting from 0.94.13 before 2.2.3 allows read past end of input line
Affected Software
5 affected componentsFixes available
Mutt Mutt>=0.94.13<2.2.3
Debian Debian Linux=9.0
Fedoraproject Fedora=36
debian/mutt
2.0.5-4.1+deb11u32.2.12-0.1~deb12u12.2.9-1+deb12u12.2.13-1
debian/neomutt<=20201127+dfsg.1-1.2
20220429+dfsg1-4.120250404+dfsg-120250404+dfsg-2
Remediation
Patch Available
Event History
Apr 14, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Jan 15, 2025
Data Sourced
via Launchpad·05:07 PM
Description
Jan 19, 2025
Data Sourced
via Ubuntu·05:07 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is CVE-2022-1328?
CVE-2022-1328 is a buffer overflow vulnerability in the uudecoder component of Mutt, affecting all versions starting from 0.94.13 before 2.2.3.
2
How does CVE-2022-1328 impact Mutt?
CVE-2022-1328 allows an attacker to read past the end of an input line, potentially leading to unauthorized access or remote code execution.
3
Which software versions are affected by CVE-2022-1328?
All versions of Mutt starting from 0.94.13 before 2.2.3 are affected.
4
What is the severity of CVE-2022-1328?
CVE-2022-1328 has a severity rating of 5.3 (medium).
5
How can I fix CVE-2022-1328 in Mutt?
To fix CVE-2022-1328, it is recommended to upgrade Mutt to version 2.2.3 or later, which includes a patch for the vulnerability.