Source: mutt Version: 2.1.4-1 Severity: important Tags: security upstream X-Debbugs-Cc: car...@debian.org, Debian Security Team <t...@security.debian.org> Control: found -1 2.0.5-4.1 Control: found -1 1.10.1-2.1+deb10u5 Control: found -1 1.10.1-1 Control: clone -1 -2 Control: reassign -2 src:neomutt 20211029+dfsg1-1 Control: retitle -2 neomutt: CVE-2022-1328
Hi, The following vulnerability was published for mutt, the issue similarly has it's sister in neomutt, so cloning the bug, [3] refers to the fix in neomutt. CVE-2022-1328[0]: | Buffer Overflow in uudecoder in Mutt affecting all versions starting | from 0.94.13 before 2.2.3 allows read past end of input line If you fix the vulnerability please also make sure to include the CVE (Common Vulnerabilities & Exposures) id in your changelog entry. For further information see: [0] https://security-tracker.debian.org/tracker/CVE-2022-1328 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-1328 [1] https://gitlab.com/muttmua/mutt/-/issues/404 [2] https://gitlab.com/muttmua/mutt/-/commit/e5ed080c00e59701ca62ef9b2a6d2612ebf765a5 [3] https://gitlab.com/neomutt/neomutt/-/commit/ee7cb4e461c1cdf0ac14817b03687d5908b85f84 Regards, Salvatore