Mutt mutt_decode_uuencoded() Memory Disclosure

Discussion in 'News Aggregator' started by Packet Storm, 11 Jul 2022.

  1. Packet Storm

    Packet Storm Guest

    In mutt_decode_uuencoded(), the line length is read from the untrusted uuencoded part without validation. This could result in including private memory in replys, for example fragments of other messages, passphrases or keys.

    Continue reading...
     

Share This Page

Loading...