CVE-2024-49394
12.11.2024, 03:15
In mutt and neomutt the In-Reply-To email header field is not protected by cryptographic signing which allows an attacker to reuse an unencrypted but signed email message to impersonate the original sender.Enginsight
| Vendor | Product | Version |
|---|---|---|
| mutt | mutt | - |
| neomutt | neomutt | - |
| redhat | enterprise_linux | 8.0 |
| redhat | enterprise_linux | 9.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| mutt |
| ||||||||||||||||
| neomutt |
|
Common Weakness Enumeration