Lucene search

K
ubuntuUbuntuUSN-5392-1
HistoryApr 28, 2022 - 12:00 a.m.

Mutt vulnerabilities

2022-04-2800:00:00
ubuntu.com
68
mutt
ubuntu
vulnerabilities
20.04 lts
21.10
18.04 esm
16.04 esm
mime
gpg
pgp
cve-2021-32055
cve-2022-1328

CVSS2

5.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:N/A:P

CVSS3

9.1

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H

AI Score

6

Confidence

High

EPSS

0.003

Percentile

70.0%

Releases

  • Ubuntu 22.04 LTS
  • Ubuntu 21.10
  • Ubuntu 20.04 LTS
  • Ubuntu 18.04 ESM
  • Ubuntu 16.04 ESM

Packages

  • mutt - text-based mailreader supporting MIME, GPG, PGP and threading

Details

It was discovered that Mutt incorrectly handled certain requests.
An attacker could possibly use this issue to expose sensitive information.
This issue only affected Ubuntu 20.04 LTS. (CVE-2021-32055)

It was discovered that Mutt incorrectly handled certain input.
An attacker could possibly use this issue to cause a crash,
or expose sensitive information. (CVE-2022-1328)

OSVersionArchitecturePackageVersionFilename
Ubuntu22.04noarchmutt< 2.1.4-1ubuntu1.1UNKNOWN
Ubuntu22.04noarchmutt-dbgsym< 2.1.4-1ubuntu1.1UNKNOWN
Ubuntu21.10noarchmutt< 2.0.5-4.1ubuntu0.1UNKNOWN
Ubuntu21.10noarchmutt-dbgsym< 2.0.5-4.1ubuntu0.1UNKNOWN
Ubuntu20.04noarchmutt< 1.13.2-1ubuntu0.5UNKNOWN
Ubuntu20.04noarchmutt-dbgsym< 1.13.2-1ubuntu0.5UNKNOWN
Ubuntu18.04noarchmutt< 1.9.4-3ubuntu0.6UNKNOWN
Ubuntu18.04noarchmutt-dbgsym< 1.9.4-3ubuntu0.6UNKNOWN
Ubuntu16.04noarchmutt-patched< 1.5.24-1ubuntu0.6+esm2UNKNOWN
Ubuntu16.04noarchmutt< 1.5.24-1ubuntu0.6UNKNOWN
Rows per page:
1-10 of 151

CVSS2

5.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:N/A:P

CVSS3

9.1

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H

AI Score

6

Confidence

High

EPSS

0.003

Percentile

70.0%