Stack-based buffer overflow in the browse_get_namespace function in imap/browse.c of Mutt 1.4.2.1 and earlier allows remote attackers to cause a denial of service (crash) or execute arbitrary code via long namespaces received from the IMAP server.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mutt | Mutt | 1.4.2 (including) | 1.4.2 (including) |
Mutt | Mutt | 1.4.2.1 (including) | 1.4.2.1 (including) |
Red Hat Enterprise Linux 3 | RedHat | mutt-5:1.4.1-3.5.rhel3 | * |
Red Hat Enterprise Linux 4 | RedHat | mutt-5:1.4.1-11.rhel4 | * |
Mutt | Ubuntu | dapper | * |
Mutt | Ubuntu | devel | * |
Mutt | Ubuntu | edgy | * |
Mutt | Ubuntu | feisty | * |