mutt 1.5.24-1ubuntu0.1 source package in Ubuntu

Changelog

mutt (1.5.24-1ubuntu0.1) xenial-security; urgency=medium

  * SECURITY UPDATE: Mishandles a NO response without a msg
    - debian/patches/ubuntu/mutt-CVE-2018-14349.patch: fix in
      imap/command.c.
    - CVE-2018-14349
  * SECURITY UPDATE: Stack-based buffer overflow
    - debian/patches/ubuntu/mutt-CVE-2018-14350-CVE-2018-14358.patch:
      fix in imap/message.c.
    - CVE-2018-14350
    - CVE-2018-14358
  * SECURITY UPDATE: Mishandles a long IMAP status
    - debian/patches/ubuntu/mutt-CVE-2018-14351.patch: fix in
      imap/command.c.
    - CVE-2018-14351
  * SECURITY UPDATE: Integer underflow and stack-based buffer overflow
    - debian/patches/ubuntu/mutt-CVE-2018-14352-CVE-2018-14353.patch:
      fix in imap/util.c.
    - CVE-2018-14352
    - CVE-2018-14353
  * SECURITY UPDATE: Remote arbitrary code execution
    - debian/patches/ubuntu/mutt-CVE-2018-14354-CVE-2018-14357.patch:
      fix in imap/command.c, imap/imap.c, imap/imap_private.h, imap/util.c.
    - CVE-2018-14354
    - CVE-2018-14357
  * SECURITY UPDATE: Directory traversal
    - debian/patches/ubuntu/mutt-CVE-2018-14355.patch: fix in
      imap/util.c.
    - CVE-2018-14355
  * SECURITY UPDATE: Mishandles a zero-lenght UID
    - debian/patches/ubuntu/mutt-CVE-2018-14356.patch: fix in
      pop.c.
    - CVE-2018-14356
  * SECURITY UPDATE: Buffer overflow
    - debian/patches/ubuntu/mutt-CVE-2018-14359.patch: fix in
      base64.c, imap/auth_cram.c, imap/auth_gss.c, protos.h.
    - CVE-2018-14359
  * SECURITY UPDATE: Unsafe character interactions
    - debian/patches/ubuntu/mutt-CVE-2018-14362.patch: fix in
      pop.c.
    - CVE-2018-14362

 -- <email address hidden> (Leonidas S. Barbosa)  Thu, 19 Jul 2018 10:31:16 -0300

Upload details

Uploaded by:
Leonidas S. Barbosa
Uploaded to:
Xenial
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
mail
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
mutt_1.5.24.orig.tar.gz 3.7 MiB a292ca765ed7b19db4ac495938a3ef808a16193b7d623d65562bb8feb2b42200
mutt_1.5.24-1ubuntu0.1.debian.tar.xz 134.2 KiB dd61ba3d874bbfa1c0c61a5f07871f286462a05cfd643f97cc652099f772f036
mutt_1.5.24-1ubuntu0.1.dsc 2.3 KiB 51c6de7d1b10d103abf62dbce9c992bb8baba12d6dda66cb38fc70d90ac6e8e8

View changes file

Binary packages built by this source

mutt: text-based mailreader supporting MIME, GPG, PGP and threading

 Mutt is a sophisticated text-based Mail User Agent. Some highlights:
 .
  * MIME support (including RFC1522 encoding/decoding of 8-bit message
    headers and UTF-8 support).
  * PGP/MIME support (RFC 2015).
  * Advanced IMAP client supporting SSL encryption and SASL authentication.
  * POP3 support.
  * ESMTP support.
  * Message threading (both strict and non-strict).
  * Keybindings are configurable, default keybindings are much like ELM;
    Mush and PINE-like ones are provided as examples.
  * Handles MMDF, MH and Maildir in addition to regular mbox format.
  * Messages may be (indefinitely) postponed.
  * Colour support.
  * Highly configurable through easy but powerful rc file.

mutt-dbg: debugging symbols for mutt

 Mutt is a sophisticated text-based Mail User Agent.
 .
 This package contains the debugging symbols for mutt and mutt-patched; this
 is supposed to be used when there is a core file which should be analyzed
 using gdb.

mutt-dbgsym: debug symbols for package mutt

 Mutt is a sophisticated text-based Mail User Agent. Some highlights:
 .
  * MIME support (including RFC1522 encoding/decoding of 8-bit message
    headers and UTF-8 support).
  * PGP/MIME support (RFC 2015).
  * Advanced IMAP client supporting SSL encryption and SASL authentication.
  * POP3 support.
  * ESMTP support.
  * Message threading (both strict and non-strict).
  * Keybindings are configurable, default keybindings are much like ELM;
    Mush and PINE-like ones are provided as examples.
  * Handles MMDF, MH and Maildir in addition to regular mbox format.
  * Messages may be (indefinitely) postponed.
  * Colour support.
  * Highly configurable through easy but powerful rc file.

mutt-patched: Mutt Mail User Agent with extra patches

 Mutt is a sophisticated text-based Mail User Agent.
 .
 This package adds the following patches:
  * sidebar: list mailboxes (with new mail) in a separate column on screen
  * nntp: NNTP support for mutt
  * multiple-fcc: handle FCC with multiple, comma separated entries

mutt-patched-dbgsym: debug symbols for package mutt-patched

 Mutt is a sophisticated text-based Mail User Agent.
 .
 This package adds the following patches:
  * sidebar: list mailboxes (with new mail) in a separate column on screen
  * nntp: NNTP support for mutt
  * multiple-fcc: handle FCC with multiple, comma separated entries