Back to VulnFeed / CVE-2026-43862
root@hackertop:~/vulnfeed/CVE-2026-43862#
CVE-2026-43862 MEDIUM Memory Corruption ⚠ Unpatched · Zero-day◉ PoC 公开 Lifecycle 4/7

mutt up to 2.3.1 imap_auth_gss type confusion

mutt 17d ago Impact pending confirmation
LIFECYCLE
4.3 CVSS
Vulnerability Detail Mitigation Lifecycle CVSS Assessment
Vulnerability Description
A vulnerability classified as problematic was found in mutt up to 2.3.1 (Mail Client Software). This vulnerability affects the function imap_auth_gss. Upgrading to version 2.3.2 eliminates this vulnerability.
Root Cause Analysis
The CWE definition for the vulnerability is CWE-843. The product allocates or initializes a resource such as a pointer, object, or variable using one type, but it later accesses that resource using a type that is incompatible with the original type.

Impact: As an impact it is known to affect confidentiality, integrity, and availability.

Countermeasure: Upgrading to version 2.3.2 eliminates this vulnerability.
Validation (PoC/EXP) - Looking for Contributors
No public PoC yet

Public validation traces already exist. Community contributors can extend them with richer reproduction content.

Contribute Your PoC/EXP
Log in to contribute PoC/EXP content. Log in
Back to VulnFeed
CVE-2026-43862 · CVSS 4.3 · Active Threat