Oval Definition:oval:org.opensuse.security:def:60985
Revision Date:2020-12-01Version:1
Title:Security update for mutt (Important)
Description:

This update for mutt fixes the following issues:

- CVE-2020-14954: Fixed a response injection due to a STARTTLS buffering issue which was affecting IMAP, SMTP, and POP3 (bsc#1173197). - CVE-2020-14093: Fixed a potential IMAP Man-in-the-Middle attack via a PREAUTH response (bsc#1172906, bsc#1172935). - CVE-2020-14154: Fixed an issue where Mutt was ignoring an expired certificate and was proceeding with a connection (bsc#1172906, bsc#1172935).
Family:unixClass:patch
Status:Reference(s):1005023
1046856
1051042
1053188
1063675
1064569
1064580
1064583
1070905
1071319
1073231
1074293
1076696
1077445
1082063
1082210
1083417
1083420
1083422
1083424
1083426
1101591
1103676
1111789
1114981
1115518
1119687
1119971
1120323
1122293
1122299
1123022
1130116
1131576
1148987
1168630
1171252
1171254
1172745
1172906
1172935
1173197
1173377
1173378
1173380
1174421
1177914
1178671
CVE-2016-1549
CVE-2017-1000083
CVE-2017-1000408
CVE-2017-1000409
CVE-2017-15670
CVE-2017-15671
CVE-2017-15804
CVE-2017-16997
CVE-2018-1000001
CVE-2018-1000223
CVE-2018-11212
CVE-2018-16864
CVE-2018-16865
CVE-2018-16866
CVE-2018-20346
CVE-2018-20506
CVE-2018-7170
CVE-2018-7182
CVE-2018-7183
CVE-2018-7184
CVE-2018-7185
CVE-2019-13627
CVE-2019-2422
CVE-2019-3814
CVE-2019-7524
CVE-2020-12321
CVE-2020-12653
CVE-2020-12654
CVE-2020-14093
CVE-2020-14154
CVE-2020-14954
CVE-2020-15563
CVE-2020-15565
CVE-2020-15567
CVE-2020-15705
CVE-2020-15999
CVE-2020-6819
CVE-2020-6820
SUSE-SU-2017:2390-1
SUSE-SU-2018:0074-1
SUSE-SU-2018:1765-1
SUSE-SU-2018:3070-1
SUSE-SU-2019:2510-1
SUSE-SU-2020:0928-1
SUSE-SU-2020:1475-1
SUSE-SU-2020:1794-1
SUSE-SU-2020:2304-1
SUSE-SU-2020:2998-1
SUSE-SU-2020:3354-1
Platform(s):openSUSE Leap 15.1
openSUSE Leap 15.2
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-ESPOS
SUSE Linux Enterprise Server 12 SP4-LTSS
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • httpie-1.0.3-lp151.2.3 is installed
  • OR python3-httpie-1.0.3-lp151.2.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.2 is installed
  • AND Package Information
  • openconnect-7.08-lp152.9.4 is installed
  • OR openconnect-devel-7.08-lp152.9.4 is installed
  • OR openconnect-doc-7.08-lp152.9.4 is installed
  • OR openconnect-lang-7.08-lp152.9.4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • evince-3.20.1-6.16 is installed
  • OR evince-browser-plugin-3.20.1-6.16 is installed
  • OR evince-lang-3.20.1-6.16 is installed
  • OR evince-plugin-djvudocument-3.20.1-6.16 is installed
  • OR evince-plugin-dvidocument-3.20.1-6.16 is installed
  • OR evince-plugin-pdfdocument-3.20.1-6.16 is installed
  • OR evince-plugin-psdocument-3.20.1-6.16 is installed
  • OR evince-plugin-tiffdocument-3.20.1-6.16 is installed
  • OR evince-plugin-xpsdocument-3.20.1-6.16 is installed
  • OR libevdocument3-4-3.20.1-6.16 is installed
  • OR libevview3-3-3.20.1-6.16 is installed
  • OR nautilus-evince-3.20.1-6.16 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • libgcrypt-1.6.1-16.68 is installed
  • OR libgcrypt20-1.6.1-16.68 is installed
  • OR libgcrypt20-32bit-1.6.1-16.68 is installed
  • OR libgcrypt20-hmac-1.6.1-16.68 is installed
  • OR libgcrypt20-hmac-32bit-1.6.1-16.68 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • xen-4.9.4_08-3.66 is installed
  • OR xen-doc-html-4.9.4_08-3.66 is installed
  • OR xen-libs-4.9.4_08-3.66 is installed
  • OR xen-libs-32bit-4.9.4_08-3.66 is installed
  • OR xen-tools-4.9.4_08-3.66 is installed
  • OR xen-tools-domU-4.9.4_08-3.66 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_180-94_113-default-4-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_30-4-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libsystemd0-228-150.58 is installed
  • OR libsystemd0-32bit-228-150.58 is installed
  • OR libudev1-228-150.58 is installed
  • OR libudev1-32bit-228-150.58 is installed
  • OR systemd-228-150.58 is installed
  • OR systemd-32bit-228-150.58 is installed
  • OR systemd-bash-completion-228-150.58 is installed
  • OR systemd-sysvinit-228-150.58 is installed
  • OR udev-228-150.58 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND coolkey-1.1.0-148.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
  • AND python-ipaddress-1.0.18-3.13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-LTSS is installed
  • AND Package Information
  • dovecot22-2.2.31-19.22 is installed
  • OR dovecot22-backend-mysql-2.2.31-19.22 is installed
  • OR dovecot22-backend-pgsql-2.2.31-19.22 is installed
  • OR dovecot22-backend-sqlite-2.2.31-19.22 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 9 is installed
  • AND squid-3.5.21-26.29 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND mutt-1.10.1-55.11 is installed
  • BACK