mutt: IMAP namespace buffer overflow
Package(s): | mutt | CVE #(s): | CVE-2006-3242 | ||||||||||||||||||||||||||||||||||||||||||||||||||||
Created: | June 28, 2006 | Updated: | October 24, 2006 | ||||||||||||||||||||||||||||||||||||||||||||||||||||
Description: | TAKAHASHI Tamotsu discovered that mutt's IMAP backend did not sufficiently check the validity of namespace strings. If an user connects to a malicious IMAP server, that server could exploit this to crash mutt or even execute arbitrary code with the privileges of the mutt user. See this Secunia advisory for more information. | ||||||||||||||||||||||||||||||||||||||||||||||||||||||
Alerts: |
|