mutt (1.13.2-1ubuntu0.2) focal-security; urgency=medium * SECURITY UPDATE: Man-in-the-middle attack - debian/patches/CVE-2020-14954.patch: fix STARTTLS response injection attack clearing the CONNECTION input buffer in mutt_ssl_starttls() in mutt_socket.c, mutt_socket.h, mutt_ssl.c, mutt_ssl_gnutls.c. - CVE-2020-14954 -- <email address hidden> (Leonidas S. Barbosa) Mon, 22 Jun 2020 14:46:34 -0300