Security update for mutt
SUSE Security Update: Security update for mutt
Announcement ID: | SUSE-SU-2015:0758-1 |
Rating: | low |
References: | #905481 #907453 |
Affected Products: |
An update that solves one vulnerability and has one errata is now available.
Description:
The mutt mail client has been updated to fix a heap-based buffer overflow in mutt_substrdup(). (CVE-2014-9116)
Additionally, a patch has been added to allow users to override the "From" address when executing mutt in batch mode.
Security Issues:
Patch Instructions:
To install this SUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:
- SUSE Linux Enterprise Server 11 SP3 for VMware:
zypper in -t patch slessp3-mutt=10435
- SUSE Linux Enterprise Server 11 SP3:
zypper in -t patch slessp3-mutt=10435
- SUSE Linux Enterprise Desktop 11 SP3:
zypper in -t patch sledsp3-mutt=10435
To bring your system up-to-date, use "zypper patch".
Package List:
- SUSE Linux Enterprise Server 11 SP3 for VMware (i586 x86_64):
- mutt-1.5.17-42.39.1
- SUSE Linux Enterprise Server 11 SP3 (i586 ia64 ppc64 s390x x86_64):
- mutt-1.5.17-42.39.1
- SUSE Linux Enterprise Desktop 11 SP3 (i586 x86_64):
- mutt-1.5.17-42.39.1