Unrated severityNVD Advisory· Published Jan 19, 2021· Updated Aug 3, 2024
CVE-2021-3181
CVE-2021-3181
Description
rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a denial of service (mailbox unavailability) by sending email messages with sequences of semicolon characters in RFC822 address fields (aka terminators of empty groups). A small email message from the attacker can cause large memory consumption, and the victim may then be unable to see email messages from other persons.
Affected products
8- Mutt/Muttdescription
- osv-coords7 versionspkg:rpm/almalinux/muttpkg:rpm/opensuse/mutt&distro=openSUSE%20Leap%2015.1pkg:rpm/opensuse/mutt&distro=openSUSE%20Leap%2015.2pkg:rpm/opensuse/mutt&distro=openSUSE%20Tumbleweedpkg:rpm/suse/mutt&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP2pkg:rpm/suse/mutt&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/mutt&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5
< 5:2.0.7-1.el8+ 6 more
- (no CPE)range: < 5:2.0.7-1.el8
- (no CPE)range: < 1.10.1-lp151.2.15.1
- (no CPE)range: < 1.10.1-lp152.3.15.1
- (no CPE)range: < 2.0.7-2.2
- (no CPE)range: < 1.10.1-3.20.1
- (no CPE)range: < 1.10.1-55.24.1
- (no CPE)range: < 1.10.1-55.24.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
11- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DXGWXFO77HBCD3VYEIYHHYU33LYWWWNQ/mitrevendor-advisoryx_refsource_FEDORA
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/P2OMLQKAOHPYQA4GI7ZUO6UKCPUHLYO7/mitrevendor-advisoryx_refsource_FEDORA
- security.gentoo.org/glsa/202101-25mitrevendor-advisoryx_refsource_GENTOO
- www.debian.org/security/2021/dsa-4838mitrevendor-advisoryx_refsource_DEBIAN
- www.openwall.com/lists/oss-security/2021/01/19/10mitremailing-listx_refsource_MLIST
- www.openwall.com/lists/oss-security/2021/01/27/3mitremailing-listx_refsource_MLIST
- gitlab.com/muttmua/mutt/-/commit/4a2becbdb4422aaffe3ce314991b9d670b7adf17mitrex_refsource_MISC
- gitlab.com/muttmua/mutt/-/commit/939b02b33ae29bc0d642570c1dcfd4b339037d19mitrex_refsource_MISC
- gitlab.com/muttmua/mutt/-/commit/d4305208955c5cdd9fe96dfa61e7c1e14e176a14mitrex_refsource_MISC
- gitlab.com/muttmua/mutt/-/issues/323mitrex_refsource_MISC
- lists.debian.org/debian-lts-announce/2021/01/msg00017.htmlmitremailing-listx_refsource_MLIST
News mentions
0No linked articles in our index yet.