First published: Sat Sep 09 2023(Updated: )
Null pointer dereference when viewing a specially crafted email in Mutt >1.5.2 <2.2.12
Credit: cve@gitlab.com cve@gitlab.com cve@gitlab.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/mutt | <=1.10.1-2.1+deb10u6 | 1.10.1-2.1+deb10u7 2.0.5-4.1+deb11u3 2.2.12-0.1~deb12u1 2.2.9-1+deb12u1 2.2.12-0.1 |
Mutt Mutt | >1.5.2<2.2.12 | |
Debian Debian Linux | =10.0 | |
Debian Debian Linux | =11.0 | |
Debian Debian Linux | =12.0 | |
ubuntu/mutt | <2.2.12-0.1 | 2.2.12-0.1 |
ubuntu/mutt | <1.9.4-3ubuntu0.6+ | 1.9.4-3ubuntu0.6+ |
ubuntu/mutt | <1.13.2-1ubuntu0.6 | 1.13.2-1ubuntu0.6 |
ubuntu/mutt | <2.1.4-1ubuntu1.2 | 2.1.4-1ubuntu1.2 |
ubuntu/mutt | <2.2.9-1ubuntu0.23.04.1 | 2.2.9-1ubuntu0.23.04.1 |
ubuntu/mutt | <1.5.24-1ubuntu0.6+ | 1.5.24-1ubuntu0.6+ |
ubuntu/mutt | <2.2.9-1ubuntu0.23.10.1 | 2.2.9-1ubuntu0.23.10.1 |
debian/mutt | <=2.0.5-4.1+deb11u2<=2.0.5-4.1<=2.2.9-1 | 2.2.9-1+deb12u1 2.2.12-0.1 2.0.5-4.1+deb11u3 |
redhat/mutt | <2.2.12 | 2.2.12 |
>1.5.2<2.2.12 | ||
=10.0 | ||
=11.0 | ||
=12.0 |
Upgrade to version 2.2.12
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-4874.
The title of the vulnerability is 'Null pointer dereference when viewing a specially crafted email in Mutt >1.5.2 <2.2.12'.
The severity of CVE-2023-4874 is medium, with a severity value of 6.5.
CVE-2023-4874 affects Mutt versions >1.5.2 and <2.2.12.
To fix CVE-2023-4874, update Mutt to version 2.2.12 or later.