[ALSA-2021:4181] Moderate: mutt security, bug fix, and enhancement update
Type:
security
Severity:
moderate
Release date:
2021-11-12
Description:
Mutt is a low resource, highly configurable, text-based MIME e-mail client. Mutt supports most e-mail storing formats, such as mbox and Maildir, as well as most protocols, including POP3 and IMAP. The following packages have been upgraded to a later upstream version: mutt (2.0.7). (BZ#1912614) Security Fix(es): * mutt: Incorrect handling of invalid initial IMAP responses could lead to an authentication attempt over unencrypted connection (CVE-2020-28896) * mutt: Memory leak when parsing rfc822 group addresses (CVE-2021-3181) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 mutt-2.0.7-1.el8.aarch64.rpm d70dfcb430cf21d2f8873bf333f140051518a625f15ae32a2b9b61527cdfa5c2
ppc64le mutt-2.0.7-1.el8.ppc64le.rpm fb555d29dd07f78f7224f74ab3ea546877615d3fb51b4ddb0b4e765f0f16c58e
x86_64 mutt-2.0.7-1.el8.x86_64.rpm 4a2ced56374de975ae85d0dd6fafd4bde82318d242cae572f0ad00c6742eec30
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.