Opened 8 months ago

Closed 8 months ago

#18528 closed enhancement (fixed)

mutt-2.2.12

Reported by: Bruce Dubbs Owned by: ken@…
Priority: elevated Milestone: 12.1
Component: BOOK Version: git
Severity: normal Keywords:
Cc:

Description

New point version.

Change History (5)

comment:1 by Douglas R. Reno, 8 months ago

Priority: normalelevated

Contains a security fix in it that is exploitable via mail headers.

comment:2 by ken@…, 8 months ago

Hello Mutt Users,

I've just released version 2.2.12. Instructions for downloading are available at <http://www.mutt.org/download.html>, or the tarball can be directly downloaded from <http://ftp.mutt.org/pub/mutt/>. Please take the time to verify the signature file against my public key[1].

This is a bug-fix release, fixing two crash issues. One is possible by viewing a crafted message header, so upgrading is strongly recommended.

Vendors, please backport these commits if possible:

A special thanks to Chenyuan Mi (@morningbread) for discovering the message composition crashes, giving a working example draft message, and providing the stack traces for the NULL deferences.

comment:3 by ken@…, 8 months ago

Owner: changed from blfs-book to ken@…
Status: newassigned

comment:5 by ken@…, 8 months ago

Resolution: fixed
Status: assignedclosed

Security Advisory SA-12.0-002 created.

Note: See TracTickets for help on using tickets.