Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-14954

Mutt before 1.14.4 and NeoMutt before 2020-06-19 have a STARTTLS buffering issue that affects IMAP, SMTP, and POP3. When a server sends a "begin TLS" response, the client reads additional data (e.g., from a man-in-the-middle attacker) and evaluates it in a TLS context, aka "response injection."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.038
EPSS Ranking 87.5%
CVSS Severity
CVSS v3 Score 5.9
CVSS v2 Score 4.3
References
Products affected by CVE-2020-14954
  • Mutt » Mutt » Version: 1.10.1
    cpe:2.3:a:mutt:mutt:1.10.1
  • Mutt » Mutt » Version: 1.11.0
    cpe:2.3:a:mutt:mutt:1.11.0
  • Mutt » Mutt » Version: 1.11.1
    cpe:2.3:a:mutt:mutt:1.11.1
  • Mutt » Mutt » Version: 1.11.2
    cpe:2.3:a:mutt:mutt:1.11.2
  • Mutt » Mutt » Version: 1.11.3
    cpe:2.3:a:mutt:mutt:1.11.3
  • Mutt » Mutt » Version: 1.11.4
    cpe:2.3:a:mutt:mutt:1.11.4
  • Mutt » Mutt » Version: 1.12.0
    cpe:2.3:a:mutt:mutt:1.12.0
  • Mutt » Mutt » Version: 1.12.1
    cpe:2.3:a:mutt:mutt:1.12.1
  • Mutt » Mutt » Version: 1.12.2
    cpe:2.3:a:mutt:mutt:1.12.2
  • Mutt » Mutt » Version: 1.13.0
    cpe:2.3:a:mutt:mutt:1.13.0
  • Mutt » Mutt » Version: 1.13.1
    cpe:2.3:a:mutt:mutt:1.13.1
  • Mutt » Mutt » Version: 1.13.2
    cpe:2.3:a:mutt:mutt:1.13.2
  • Mutt » Mutt » Version: 1.13.3
    cpe:2.3:a:mutt:mutt:1.13.3
  • Mutt » Mutt » Version: 1.13.4
    cpe:2.3:a:mutt:mutt:1.13.4
  • Mutt » Mutt » Version: 1.13.5
    cpe:2.3:a:mutt:mutt:1.13.5
  • Mutt » Mutt » Version: 1.14.0
    cpe:2.3:a:mutt:mutt:1.14.0
  • Mutt » Mutt » Version: 1.14.1
    cpe:2.3:a:mutt:mutt:1.14.1
  • Mutt » Mutt » Version: 1.14.2
    cpe:2.3:a:mutt:mutt:1.14.2
  • Mutt » Mutt » Version: 1.14.3
    cpe:2.3:a:mutt:mutt:1.14.3
  • Mutt » Mutt » Version: 1.5
    cpe:2.3:a:mutt:mutt:1.5
  • Mutt » Mutt » Version: 1.5.1
    cpe:2.3:a:mutt:mutt:1.5.1
  • Mutt » Mutt » Version: 1.5.10
    cpe:2.3:a:mutt:mutt:1.5.10
  • Mutt » Mutt » Version: 1.5.11
    cpe:2.3:a:mutt:mutt:1.5.11
  • Mutt » Mutt » Version: 1.5.12
    cpe:2.3:a:mutt:mutt:1.5.12
  • Mutt » Mutt » Version: 1.5.13
    cpe:2.3:a:mutt:mutt:1.5.13
  • Mutt » Mutt » Version: 1.5.14
    cpe:2.3:a:mutt:mutt:1.5.14
  • Mutt » Mutt » Version: 1.5.15
    cpe:2.3:a:mutt:mutt:1.5.15
  • Mutt » Mutt » Version: 1.5.16
    cpe:2.3:a:mutt:mutt:1.5.16
  • Mutt » Mutt » Version: 1.5.17
    cpe:2.3:a:mutt:mutt:1.5.17
  • Mutt » Mutt » Version: 1.5.18
    cpe:2.3:a:mutt:mutt:1.5.18
  • Mutt » Mutt » Version: 1.5.19
    cpe:2.3:a:mutt:mutt:1.5.19
  • Mutt » Mutt » Version: 1.5.2
    cpe:2.3:a:mutt:mutt:1.5.2
  • Mutt » Mutt » Version: 1.5.20
    cpe:2.3:a:mutt:mutt:1.5.20
  • Mutt » Mutt » Version: 1.5.20-7
    cpe:2.3:a:mutt:mutt:1.5.20-7
  • Mutt » Mutt » Version: 1.5.21
    cpe:2.3:a:mutt:mutt:1.5.21
  • Mutt » Mutt » Version: 1.5.22
    cpe:2.3:a:mutt:mutt:1.5.22
  • Mutt » Mutt » Version: 1.5.3
    cpe:2.3:a:mutt:mutt:1.5.3
  • Mutt » Mutt » Version: 1.5.4
    cpe:2.3:a:mutt:mutt:1.5.4
  • Mutt » Mutt » Version: 1.5.5
    cpe:2.3:a:mutt:mutt:1.5.5
  • Mutt » Mutt » Version: 1.5.6
    cpe:2.3:a:mutt:mutt:1.5.6
  • Mutt » Mutt » Version: 1.5.7
    cpe:2.3:a:mutt:mutt:1.5.7
  • Mutt » Mutt » Version: 1.5.8
    cpe:2.3:a:mutt:mutt:1.5.8
  • Mutt » Mutt » Version: 1.5.9
    cpe:2.3:a:mutt:mutt:1.5.9
  • Neomutt » Neomutt » Version: 20160307
    cpe:2.3:a:neomutt:neomutt:20160307
  • Neomutt » Neomutt » Version: 20160317
    cpe:2.3:a:neomutt:neomutt:20160317
  • Neomutt » Neomutt » Version: 20160320
    cpe:2.3:a:neomutt:neomutt:20160320
  • Neomutt » Neomutt » Version: 20160328
    cpe:2.3:a:neomutt:neomutt:20160328
  • Neomutt » Neomutt » Version: 20160404
    cpe:2.3:a:neomutt:neomutt:20160404
  • Neomutt » Neomutt » Version: 20160416
    cpe:2.3:a:neomutt:neomutt:20160416
  • Neomutt » Neomutt » Version: 20160502
    cpe:2.3:a:neomutt:neomutt:20160502
  • Neomutt » Neomutt » Version: 20160530
    cpe:2.3:a:neomutt:neomutt:20160530
  • Neomutt » Neomutt » Version: 20160611
    cpe:2.3:a:neomutt:neomutt:20160611
  • Neomutt » Neomutt » Version: 20160709
    cpe:2.3:a:neomutt:neomutt:20160709
  • Neomutt » Neomutt » Version: 20160723
    cpe:2.3:a:neomutt:neomutt:20160723
  • Neomutt » Neomutt » Version: 20160808
    cpe:2.3:a:neomutt:neomutt:20160808
  • Neomutt » Neomutt » Version: 20160821
    cpe:2.3:a:neomutt:neomutt:20160821
  • Neomutt » Neomutt » Version: 20160822
    cpe:2.3:a:neomutt:neomutt:20160822
  • Neomutt » Neomutt » Version: 20160826
    cpe:2.3:a:neomutt:neomutt:20160826
  • Neomutt » Neomutt » Version: 20160827
    cpe:2.3:a:neomutt:neomutt:20160827
  • Neomutt » Neomutt » Version: 20160910
    cpe:2.3:a:neomutt:neomutt:20160910
  • Neomutt » Neomutt » Version: 20160916
    cpe:2.3:a:neomutt:neomutt:20160916
  • Neomutt » Neomutt » Version: 20161002
    cpe:2.3:a:neomutt:neomutt:20161002
  • Neomutt » Neomutt » Version: 20161003
    cpe:2.3:a:neomutt:neomutt:20161003
  • Neomutt » Neomutt » Version: 20161014
    cpe:2.3:a:neomutt:neomutt:20161014
  • Neomutt » Neomutt » Version: 20161028
    cpe:2.3:a:neomutt:neomutt:20161028
  • Neomutt » Neomutt » Version: 20161104
    cpe:2.3:a:neomutt:neomutt:20161104
  • Neomutt » Neomutt » Version: 20161126
    cpe:2.3:a:neomutt:neomutt:20161126
  • Neomutt » Neomutt » Version: 20170113
    cpe:2.3:a:neomutt:neomutt:20170113
  • Neomutt » Neomutt » Version: 20170128
    cpe:2.3:a:neomutt:neomutt:20170128
  • Neomutt » Neomutt » Version: 20170206
    cpe:2.3:a:neomutt:neomutt:20170206
  • Neomutt » Neomutt » Version: 20170225
    cpe:2.3:a:neomutt:neomutt:20170225
  • Neomutt » Neomutt » Version: 20170306
    cpe:2.3:a:neomutt:neomutt:20170306
  • Neomutt » Neomutt » Version: 20170414
    cpe:2.3:a:neomutt:neomutt:20170414
  • Neomutt » Neomutt » Version: 20170421
    cpe:2.3:a:neomutt:neomutt:20170421
  • Neomutt » Neomutt » Version: 20170428
    cpe:2.3:a:neomutt:neomutt:20170428
  • Neomutt » Neomutt » Version: 20170526
    cpe:2.3:a:neomutt:neomutt:20170526
  • Neomutt » Neomutt » Version: 20170602
    cpe:2.3:a:neomutt:neomutt:20170602
  • Neomutt » Neomutt » Version: 20170609
    cpe:2.3:a:neomutt:neomutt:20170609
  • Neomutt » Neomutt » Version: 20170707
    cpe:2.3:a:neomutt:neomutt:20170707
  • Neomutt » Neomutt » Version: 20170714
    cpe:2.3:a:neomutt:neomutt:20170714
  • Neomutt » Neomutt » Version: 20170907
    cpe:2.3:a:neomutt:neomutt:20170907
  • Neomutt » Neomutt » Version: 20170912
    cpe:2.3:a:neomutt:neomutt:20170912
  • Neomutt » Neomutt » Version: 20171006
    cpe:2.3:a:neomutt:neomutt:20171006
  • Neomutt » Neomutt » Version: 20171013
    cpe:2.3:a:neomutt:neomutt:20171013
  • Neomutt » Neomutt » Version: 20171027
    cpe:2.3:a:neomutt:neomutt:20171027
  • Neomutt » Neomutt » Version: 20171208
    cpe:2.3:a:neomutt:neomutt:20171208
  • Neomutt » Neomutt » Version: 20171215
    cpe:2.3:a:neomutt:neomutt:20171215
  • Neomutt » Neomutt » Version: 20180223
    cpe:2.3:a:neomutt:neomutt:20180223
  • Neomutt » Neomutt » Version: 20180323
    cpe:2.3:a:neomutt:neomutt:20180323
  • Neomutt » Neomutt » Version: 20180512
    cpe:2.3:a:neomutt:neomutt:20180512
  • Neomutt » Neomutt » Version: 20180622
    cpe:2.3:a:neomutt:neomutt:20180622
  • Neomutt » Neomutt » Version: 20180716
    cpe:2.3:a:neomutt:neomutt:20180716
  • Neomutt » Neomutt » Version: 2019-10-25
    cpe:2.3:a:neomutt:neomutt:2019-10-25
  • Neomutt » Neomutt » Version: 20191025
    cpe:2.3:a:neomutt:neomutt:20191025
  • Neomutt » Neomutt » Version: 20191102
    cpe:2.3:a:neomutt:neomutt:20191102
  • Neomutt » Neomutt » Version: 20191111
    cpe:2.3:a:neomutt:neomutt:20191111
  • Neomutt » Neomutt » Version: 20191129
    cpe:2.3:a:neomutt:neomutt:20191129
  • Neomutt » Neomutt » Version: 20191207
    cpe:2.3:a:neomutt:neomutt:20191207
  • Neomutt » Neomutt » Version: 2020-11-20
    cpe:2.3:a:neomutt:neomutt:2020-11-20
  • Neomutt » Neomutt » Version: 20200313
    cpe:2.3:a:neomutt:neomutt:20200313
  • Neomutt » Neomutt » Version: 20200320
    cpe:2.3:a:neomutt:neomutt:20200320
  • Neomutt » Neomutt » Version: 20200417
    cpe:2.3:a:neomutt:neomutt:20200417
  • Neomutt » Neomutt » Version: 20200424
    cpe:2.3:a:neomutt:neomutt:20200424
  • Neomutt » Neomutt » Version: 20200501
    cpe:2.3:a:neomutt:neomutt:20200501
  • Canonical » Ubuntu Linux » Version: 12.04
    cpe:2.3:o:canonical:ubuntu_linux:12.04
  • Canonical » Ubuntu Linux » Version: 16.04
    cpe:2.3:o:canonical:ubuntu_linux:16.04
  • Canonical » Ubuntu Linux » Version: 18.04
    cpe:2.3:o:canonical:ubuntu_linux:18.04
  • Canonical » Ubuntu Linux » Version: 19.10
    cpe:2.3:o:canonical:ubuntu_linux:19.10
  • Canonical » Ubuntu Linux » Version: 20.04
    cpe:2.3:o:canonical:ubuntu_linux:20.04
  • Debian » Debian Linux » Version: 10.0
    cpe:2.3:o:debian:debian_linux:10.0
  • Debian » Debian Linux » Version: 8.0
    cpe:2.3:o:debian:debian_linux:8.0
  • Debian » Debian Linux » Version: 9.0
    cpe:2.3:o:debian:debian_linux:9.0
  • Fedoraproject » Fedora » Version: 31
    cpe:2.3:o:fedoraproject:fedora:31
  • Fedoraproject » Fedora » Version: 32
    cpe:2.3:o:fedoraproject:fedora:32
  • Opensuse » Leap » Version: 15.1
    cpe:2.3:o:opensuse:leap:15.1
  • Opensuse » Leap » Version: 15.2
    cpe:2.3:o:opensuse:leap:15.2


Contact Us

Shodan ® - All rights reserved