[NBLUG/talk] [Fwd: mutt-1.4.1 fixes a buffer overflow.]

ME dugan at passwall.com
Wed Mar 19 20:06:01 PST 2003


Check for updates if you use mutt...


---------------------------- Original Message ----------------------------
Subject: mutt-1.4.1 fixes a buffer overflow.
From:    "Thomas Roessler" <roessler at does-not-exist.org>
Date:    Wed, March 19, 2003 6:15 am
To:      BUGTRAQ at securityfocus.com
--------------------------------------------------------------------------
Mutt versions 1.4.1 and 1.5.4 have just been released and will soon be
available from ftp://ftp.mutt.org/mutt/.

Both versions fix a buffer overflow in mutt's IMAP client code which was
identified by Core Security Technologies, and fixed by Edmund
Grimley Evans.  A more detailed advisory will be published by Core Security.

Version 1.4.1 is a release on mutt's stable branch.  The only
differences against 1.4 are a number of bug fixes.  If you are
currently using mutt 1.4, it's probably a very good idea to update.

Version 1.5.4 is a snapshot of mutt's unstable branch, and may be
interesting to those brave souls who would like to play with the
latest features.  (Or want to help us to identify some bugs in that code.)


-- 
Thomas Roessler                        <roessler at does-not-exist.org>


------=_20030319200839_57141
Content-Type: application/pgp-signature
Content-Transfer-Encoding: 8bit
Content-Disposition: inline
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More information about the talk mailing list