3.7
/ 10
LOW
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
Description
mutt before 2.3.2 sometimes truncates the hash_passwd by one byte for IMAP auth_cram MD5 digest.
Basic Information
ID
CVE-2026-43860
Source
mitre
Published
May 4, 2026 at 05:45
Modified
May 4, 2026 at 05:51
Affected Product
Vendor
mutt
Product
mutt
Affected Versions
mutt mutt 0