Vulnerabilities > Mutt > High

DATE CVE VULNERABILITY TITLE RISK
2018-07-17 CVE-2018-14349 Improper Input Validation vulnerability in multiple products
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16.
network
low complexity
debian mutt neomutt canonical CWE-20
7.5
2005-08-23 CVE-2005-2642 Buffer Overflow vulnerability in Mutt 1.5.10
Buffer overflow in the mutt_decode_xbit function in Handler.c for Mutt 1.5.10 allows remote attackers to execute arbitrary code, possibly due to interactions with libiconv or gettext.
network
low complexity
mutt
7.5
2004-03-03 CVE-2004-0078 Remote Buffer Overflow vulnerability in Mutt Menu Drawing
Buffer overflow in the index menu code (menu_pad_string of menu.c) for Mutt 1.4.1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via certain mail messages.
network
low complexity
mutt
7.5
2003-06-16 CVE-2003-0299 Denial-Of-Service vulnerability in Balsa
The IMAP Client, as used in mutt 1.4.1 and Balsa 2.0.10, allows remote malicious IMAP servers to cause a denial of service and possibly execute arbitrary code via certain large mailbox size values that cause either integer signedness errors or integer overflow errors.
network
low complexity
mutt stuart-parmenter
7.5
2003-04-02 CVE-2003-0167 Remote Folder Buffer Overflow vulnerability in Mutt IMAP
Multiple off-by-one buffer overflows in the IMAP capability for Mutt 1.3.28 and earlier, and Balsa 1.2.4 and earlier, allow a remote malicious IMAP server to cause a denial of service (crash) and possibly execute arbitrary code via a specially crafted mail folder, a different vulnerability than CVE-2003-0140.
network
low complexity
mutt
7.5
2003-03-24 CVE-2003-0140 Remote Folder Buffer Overrun vulnerability in Mutt UTF-7 Internationalized
Buffer overflow in Mutt 1.4.0 and possibly earlier versions, 1.5.x up to 1.5.3, and other programs that use Mutt code such as Balsa before 2.0.10, allows a remote malicious IMAP server to cause a denial of service (crash) and possibly execute arbitrary code via a crafted folder.
network
low complexity
mutt
7.5
2002-02-27 CVE-2002-0001 Buffer Overflow vulnerability in Mutt Address Handling
Vulnerability in RFC822 address parser in mutt before 1.2.5.1 and mutt 1.3.x before 1.3.25 allows remote attackers to execute arbitrary commands via an improperly terminated comment or phrase in the address list.
network
low complexity
mutt
7.5
2001-06-27 CVE-2001-0473 Format string vulnerability in Mutt before 1.2.5 allows a remote malicious IMAP server to execute arbitrary commands.
network
low complexity
immunix mutt conectiva mandrakesoft redhat
7.5
1999-09-27 CVE-1999-0940 Unspecified vulnerability in Mutt Mail Client
Buffer overflow in mutt mail client allows remote attackers to execute commands via malformed MIME messages.
network
low complexity
mutt
7.5
1998-07-28 CVE-1999-0941 Unspecified vulnerability in Mutt 0.95.6
Mutt mail client allows a remote attacker to execute commands via shell metacharacters.
network
low complexity
mutt
7.5