SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2022-1328

Buffer Overflow in uudecoder in Mutt affecting all versions starting from 0.94.13 before 2.2.3 allows read past end of input line

MEDIUM 5.3EPSS 1.71%

Does this matter?

Lower severity and a low EPSS score (1.71%). Track it; it rarely justifies an emergency change on its own.

Description

Buffer Overflow in uudecoder in Mutt affecting all versions starting from 0.94.13 before 2.2.3 allows read past end of input line

CVSS 3.1
5.3 MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
EPSS
1.71% probability · 76th percentile
CISA KEV
Not listed
Weakness
CWE-120
Affected
mutt/mutt · debian/debian linux · fedoraproject/fedora
Source
cve@gitlab.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.