Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Debian_linux
(Debian)Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2018-07-17 | CVE-2018-14356 | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. pop.c mishandles a zero-length UID. | Ubuntu_linux, Debian_linux, Mutt, Neomutt | 9.8 | ||
2018-07-17 | CVE-2018-14355 | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/util.c mishandles ".." directory traversal in a mailbox name. | Ubuntu_linux, Debian_linux, Mutt, Neomutt | 5.3 | ||
2018-07-17 | CVE-2018-14353 | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap_quote_string in imap/util.c has an integer underflow. | Ubuntu_linux, Debian_linux, Mutt, Neomutt | 9.8 | ||
2018-07-17 | CVE-2018-14352 | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap_quote_string in imap/util.c does not leave room for quote characters, leading to a stack-based buffer overflow. | Ubuntu_linux, Debian_linux, Mutt, Neomutt | 9.8 | ||
2018-07-17 | CVE-2018-14351 | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/command.c mishandles a long IMAP status mailbox literal count size. | Ubuntu_linux, Debian_linux, Mutt, Neomutt | 9.8 | ||
2018-07-17 | CVE-2018-14350 | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/message.c has a stack-based buffer overflow for a FETCH response with a long INTERNALDATE field. | Ubuntu_linux, Debian_linux, Mutt, Neomutt | 9.8 | ||
2018-07-17 | CVE-2018-14349 | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/command.c mishandles a NO response without a message. | Ubuntu_linux, Debian_linux, Mutt, Neomutt | 9.8 | ||
2018-07-17 | CVE-2018-14347 | GNU Libextractor before 1.7 contains an infinite loop vulnerability in EXTRACTOR_mpeg_extract_method (mpeg_extractor.c). | Debian_linux, Libextractor | 6.5 | ||
2018-07-14 | CVE-2018-14056 | ZNC before 1.7.1-rc1 is prone to a path traversal flaw via ../ in a web skin name to access files outside of the intended skins directories. | Debian_linux, Znc | 5.3 | ||
2018-07-14 | CVE-2018-14055 | ZNC before 1.7.1-rc1 does not properly validate untrusted lines coming from the network, allowing a non-admin user to escalate his privilege and inject rogue values into znc.conf. | Debian_linux, Znc | 6.5 |