Oval Definition:oval:com.redhat.rhsa:def:20110959
Revision Date:2011-07-19Version:637
Title:RHSA-2011:0959: mutt security update (Moderate)
Description:Mutt is a text-mode mail user agent.

  • A flaw was found in the way Mutt verified SSL certificates. When a server presented an SSL certificate chain, Mutt could ignore a server hostname check failure. A remote attacker able to get a certificate from a trusted Certificate Authority could use this flaw to trick Mutt into accepting a certificate issued for a different hostname, and perform man-in-the-middle attacks against Mutt's SSL connections. (CVE-2011-1429)

    All Mutt users should upgrade to this updated package, which contains a backported patch to correct this issue. All running instances of Mutt must be restarted for this update to take effect.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2011-1429
    CVE-2011-1429
    RHSA-2011:0959
    RHSA-2011:0959-01
    RHSA-2011:0959-01
    Platform(s):Red Hat Enterprise Linux 6
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 6 is installed
  • AND mutt is earlier than 5:1.5.20-2.20091214hg736b6a.el6_1.1
  • AND mutt is signed with Red Hat redhatrelease2 key
  • BACK