Mutt 1.11.0 through 2.0.x before 2.0.7 (and NeoMutt 2019-10-25 through 2021-05-04) has a $imapqresync issue in which imap/util.c has an out-of-bounds read in situations where an IMAP sequence set ends with a comma. NOTE: the $imapqresync setting for QRESYNC is not enabled by default.
[
{
"id": "CVE-2021-32055-4c81c57e",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Function",
"digest": {
"function_hash": "73505962850917160909294275267743903490",
"length": 1176.0
},
"target": {
"file": "imap/util.c",
"function": "mutt_seqset_iterator_next"
},
"source": "https://github.com/neomutt/neomutt/commit/fa1db5785e5cfd9d3cd27b7571b9fe268d2ec2dc"
},
{
"id": "CVE-2021-32055-7a585a0c",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Line",
"digest": {
"line_hashes": [
"81506391262222617034244168332835946665",
"303874870477249185833272239663961402128",
"124862167970411843036617263141853992812",
"54204883516869899386840905439130192567",
"162382499552880942347648240619023610802",
"47232061119977301568273361132025475800",
"217296151842624639288029168000282614747",
"82365684738109167211888185977821194642",
"40067316522776741466634091969401308469",
"185512031935072161211568664626799666046"
],
"threshold": 0.9
},
"target": {
"file": "imap/util.c"
},
"source": "https://github.com/neomutt/neomutt/commit/fa1db5785e5cfd9d3cd27b7571b9fe268d2ec2dc"
}
]
[
{
"id": "CVE-2021-32055-38e74542",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Function",
"digest": {
"function_hash": "327849469346756229567200198582359587522",
"length": 1160.0
},
"target": {
"file": "imap/util.c",
"function": "mutt_seqset_iterator_next"
},
"source": "https://gitlab.com/muttmua/mutt@7c4779ac24d2fb68a2a47b58c7904118f40965d5"
},
{
"id": "CVE-2021-32055-59c3aeb0",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Line",
"digest": {
"line_hashes": [
"81506391262222617034244168332835946665",
"303874870477249185833272239663961402128",
"124862167970411843036617263141853992812",
"54204883516869899386840905439130192567",
"162382499552880942347648240619023610802",
"47232061119977301568273361132025475800",
"217296151842624639288029168000282614747",
"179098974141636469554563531294800321792",
"11635958538338115415730135300912308183",
"276370641790290704923598165468097169201"
],
"threshold": 0.9
},
"target": {
"file": "imap/util.c"
},
"source": "https://gitlab.com/muttmua/mutt@7c4779ac24d2fb68a2a47b58c7904118f40965d5"
}
]