Upstream information

CVE-2007-2683 at MITRE


Buffer overflow in Mutt 1.4.2 might allow local users to execute arbitrary code via "&" characters in the GECOS field, which triggers the overflow during alias expansion.

SUSE information

Overall state of this security issue: Resolved

This issue is currently rated as having moderate severity.

CVSS v2 Scores
  National Vulnerability Database
Base Score 3.5
Vector AV:L/AC:H/Au:S/C:P/I:P/A:P
Access Vector Local
Access Complexity High
Authentication Single
Confidentiality Impact Partial
Integrity Impact Partial
Availability Impact Partial
SUSE Bugzilla entry: 275069 [RESOLVED / FIXED]

No SUSE Security Announcements cross referenced.