FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2004-0078

This CVE name corresponds to:

Entered Topic
2004-02-12 Buffer overflow in Mutt 1.4

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type CVE Entry
Name CVE-2004-0078

Description

Buffer overflow in the index menu code (menu_pad_string of menu.c) for Mutt 1.4.1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via certain mail messages.

References

Source Reference
BUGTRAQ 20040211 Mutt-1.4.2 fixes buffer overflow.
CALDERA CSSA-2004-013.0
REDHAT RHSA-2004:050
REDHAT RHSA-2004:051
MANDRAKE MDKSA-2004:010
SLACKWARE SSA:2004-043
CONFIRM http://bugs.debian.org/126336
BUGTRAQ 20040215 LNSA-#2004-0001: mutt remote crash
BUGTRAQ 20040309 [OpenPKG-SA-2004.005] OpenPKG Security Advisory (mutt)
XF mutt-index-menu-bo(15134)
BID 9641
OSVDB 3918
OVAL oval:org.mitre.oval:def:811
OVAL oval:org.mitre.oval:def:838