FS#44110 - [mutt][CVE-2014-9116] Dos-vulnerability patch
Attached to Project:
Arch Linux
Opened by Christian Rebischke (Shibumi) - Monday, 09 March 2015, 11:27 GMT
Last edited by Gaetan Bisson (vesath) - Monday, 09 March 2015, 16:46 GMT
Opened by Christian Rebischke (Shibumi) - Monday, 09 March 2015, 11:27 GMT
Last edited by Gaetan Bisson (vesath) - Monday, 09 March 2015, 16:46 GMT
|
Details
Hello,
the current mutt version 1.5.23 is vulnerable against a Dos-vulnerability. The vulnerability lies in sendlib.c. I attached a patch for this issue. THis is the original patch from the mutt-developers. It would be awesome when our current version could be patched against this vulnerability because the next mutt release needs more time. best regards Christian Rebischke References ======= Patch source: http://dev.mutt.org/hg/mutt/rev/0aebf1df4359 CVE: https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2014-9116 |
This task depends upon
Closed by Gaetan Bisson (vesath)
Monday, 09 March 2015, 16:46 GMT
Reason for closing: Fixed
Additional comments about closing: mutt-1.5.23-2 in [extra]
Monday, 09 March 2015, 16:46 GMT
Reason for closing: Fixed
Additional comments about closing: mutt-1.5.23-2 in [extra]
Comment by Gaetan Bisson (vesath) -
Monday, 09 March 2015, 16:38 GMT
Sure. Thanks!