Debian Security Advisory

DSA-4838-1 mutt -- security update

Date Reported:
25 Jan 2021
Affected Packages:
Security database references:
In the Debian bugtracking system: Bug 980326.
In Mitre's CVE dictionary: CVE-2021-3181.
More information:

Tavis Ormandy discovered a memory leak flaw in the rfc822 group recipient parsing in Mutt, a text-based mailreader supporting MIME, GPG, PGP and threading, which could result in denial of service.

For the stable distribution (buster), this problem has been fixed in version 1.10.1-2.1+deb10u5.

We recommend that you upgrade your mutt packages.

For the detailed security status of mutt please refer to its security tracker page at: