CVE-2007-2683
Mutt 1.4.2 - Buffer Overflow via GECOS Field Alias Expansion
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-2683. PoCs published by raylai.
AI-analyzed exploit summary This exploit leverages a local buffer overflow in Mutt by creating a user with a long username and shellcode in the comment field, then triggering the vulnerability via a crafted alias in the Mutt configuration file. Successful exploitation can lead to arbitrary code execution with the victim's privileges.
Description
Buffer overflow in Mutt 1.4.2 might allow local users to execute arbitrary code via "&" characters in the GECOS field, which triggers the overflow during alias expansion.
Exploits (1)
This exploit leverages a local buffer overflow in Mutt by creating a user with a long username and shellcode in the comment field, then triggering the vulnerability via a crafted alias in the Mutt configuration file. Successful exploitation can lead to arbitrary code execution with the victim's privileges.