An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. pop.c does not forbid characters that may have unsafe interaction with message-cache pathnames, as demonstrated by a '/' character.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1455-1 | mutt security update |
Debian DSA |
DSA-4277-1 | mutt security update |
EUVD |
EUVD-2018-6283 | An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. pop.c does not forbid characters that may have unsafe interaction with message-cache pathnames, as demonstrated by a '/' character. |
Ubuntu USN |
USN-3719-1 | Mutt vulnerabilities |
Ubuntu USN |
USN-3719-2 | Mutt vulnerabilities |
Ubuntu USN |
USN-3719-3 | Mutt vulnerabilities |
Ubuntu USN |
USN-7204-1 | NeoMutt vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T09:29:50.136Z
Reserved: 2018-07-17T00:00:00
Link: CVE-2018-14362
No data.
Status : Modified
Published: 2018-07-17T17:29:00.980
Modified: 2024-11-21T03:48:55.343
Link: CVE-2018-14362
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
EUVD
Ubuntu USN