Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Red Hat Local Security Checks >> RHSA-2004-050: mutt


Vulnerability Assessment Details

RHSA-2004-050: mutt

Vulnerability Assessment Summary
Check for the version of the mutt packages

Detailed Explanation for this Vulnerability Assessment


New mutt packages that fix a remotely-triggerable crash in the menu drawing
code are now available.

Mutt is a text-mode mail user agent.

A bug was found in the index menu code in versions of mutt. A remote
attacker could send a carefully crafted mail message that can cause mutt
to segfault and possibly execute arbitrary code as the victim. The Common
Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name
CVE-2004-0078 to this issue.

It is recommended that all mutt users upgrade to these updated packages,
which contain a backported security patch and are not vulnerable to this
issue.

Red Hat would like to thank Niels Heinen for reporting this issue.

Note: mutt-1.2.5.1 in Red Hat Enterprise Linux 2.1 is not vulnerable to
this issue.




Solution : http://rhn.redhat.com/errata/RHSA-2004-050.html
Network Security Threat Level: High

Networks Security ID:

Vulnerability Assessment Copyright: This script is Copyright (C) 2004 Tenable Network Security

Cables, Connectors

Juniper Networks SRX300 Services Gateway - security appliance
$407.41
Juniper Networks SRX300 Services Gateway - security appliance pictureJuniper Networks SRX 12V 5A Power Supply Adapter Inverter AC DC 100 210 220 OEM
$34.99
Juniper Networks SRX 12V 5A Power Supply Adapter Inverter AC DC 100 210 220 OEM pictureJuniper EX2200-24P-4G Ethernet Switch (EX2200-24P-4G)
$868.94
Juniper EX2200-24P-4G Ethernet Switch (EX2200-24P-4G) pictureLot of 2 Juniper Networks 910-0110-000 ISG 2000 Power Supply PS PFC250S-6101S-1
$59.99
Lot of 2 Juniper Networks 910-0110-000 ISG 2000 Power Supply PS PFC250S-6101S-1  picture


Discussions

No Discussions have been posted on this vulnerability.