CVE-2012-1103
Publication date 25 September 2012
Last updated 24 July 2024
Ubuntu priority
Description
emacs/notmuch-mua.el in Notmuch before 0.11.1, when using the Emacs interface, allows user-assisted remote attackers to read arbitrary files via crafted MML tags, which are not properly quoted in an email reply cna cause the files to be attached to the message.