mutt 1.14.4 released
"Kevin J. McCarthy" <[email protected]> Thu, 18 Jun 2020 18:14:15 -0700
| Newsgroups | gmane.mail.mutt.announce |
|---|---|
| Message-ID | <[email protected]> |
--82I3+IH0IqGh5yIs Content-Type: text/plain; charset=iso-8859-1; format=flowed Content-Disposition: inline Content-Transfer-Encoding: quoted-printable Hello Mutt Users, I've just released version 1.14.4. Instructions for downloading are=20 available at <http://www.mutt.org/download.html>, or the tarball can be=20 directly downloaded from <http://ftp.mutt.org/pub/mutt/>. Please take=20 the time to verify the signature file against my public key. This is an important security release fixing a possible=20 machine-in-the-middle response injection attack when using STARTTLS with=20 IMAP, POP3, and SMTP. (For packagers, I've requested a CVE and will=20 update the website when I have the number). Thanks again to Damian Poddebniak and Fabian Ising from the M=FCnster=20 University of Applied Sciences for reporting this issue, including=20 providing exhaustive tests. -Kevin --82I3+IH0IqGh5yIs Content-Type: application/pgp-signature; name="signature.asc" -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEiXWpszqjeRA4XFMIre92hIAxa9oFAl7sEWcACgkQre92hIAx a9pvuhAAp7ySzfe+LNheiSTxotGJl8L1UMiI6Uxo24WcghY0M5Fv9vjQ5qW0BjCi TFW2Mh/OYtmIcEUe4K0oxlX6tdYi9gZ8LsjEdE8c6m/TCw4BCeeoV3BU5M3o1VJ6 XGcVkh4fwBEDhE98LZrYNuD1KBH57W+ykfLhys49cvxCoc7qEBlBbxr7WCd5aGRs TmRApfA4nhDLC64cIUPnXwdsslby8R2C5/7AQw5q6KTuR8A779+WtwQM9SwJPVbZ XhJWm6WGfWdNGE+TM/48TrLnaFNAp1miLwThVC2jqTxk7nWq99OnJ708FNY46msC SYT3+irc1FCoEgn+0WoTjYZEXikL4AV5op6Mm34u0CfvZK7DLO33fusYNW8GUQD4 Jwa54yxk7L9O5SnHsMEnFPM0fBX1BSRVmRWAgoOwX+bg9lCvuirrn36fwPdWYL+E LMGOUWEYpLms24vQluW44YumCNmr1bUMiSlJ2y+4Y35kN3lEW3xwjDfnR0hyFgJY bK4rn+vGAdth/1NmDX0XTz215edbuMwBqL1l8YCMzhyEXd9uNWTKsANUlBHxgyCQ 4go4iArZHNh9PZrWlPuimAu7YpvQPqBlcnz3tACu7+k5stCJBJQOzBlBq9o+kpAE QbO/NcK6iv1vZgoN95lMS1QxHfAknuBun3iWViIhwiBcTyCA8Ss= =Zt22 -----END PGP SIGNATURE----- --82I3+IH0IqGh5yIs--