This script is Copyright (C) 2007-2013 Tenable Network Security, Inc.
The remote Mandrake Linux host is missing one or more security
A flaw in the way mutt processed certain APOP authentication requests
was discovered. By sending certain responses when mutt attempted to
authenticate again an APOP server, a remote attacker could possibly
obtain certain portions of the user's authentication credentials
A flaw in how mutt handled certain characters in gecos fields could
lead to a buffer overflow. A local user able to give themselves a
carefully crafted Real Name could potentially execute arbitrary code
if a victim used mutt to expand the attacker's alias (CVE-2007-2683).
Updated packages have been patched to address these issues.
Update the affected mutt and / or mutt-utf8 packages.
Risk factor :
Low / CVSS Base Score : 3.5