← Zuruck zu CVEs
CVE-2014-0477
N/ABeschreibung
The parse function in Email::Address module before 1.905 for Perl uses an inefficient regular expression, which allows remote attackers to cause a denial of service (CPU consumption) via an empty quoted string in an RFC 2822 address.
CVE Details
CVSS v3.1 BewertungN/A
Veroffentlicht7/3/2014
Zuletzt geandert4/12/2025
Quellenvd
Honeypot-Sichtungen0
Betroffene Produkte
email\:\fedoraproject:fedora
Referenzen
http://seclists.org/oss-sec/2014/q2/563(security@debian.org)
http://secunia.com/advisories/59212(security@debian.org)
http://secunia.com/advisories/59333(security@debian.org)
http://secunia.com/advisories/61981(security@debian.org)
http://www.debian.org/security/2014/dsa-2969(security@debian.org)
https://bugzilla.redhat.com/show_bug.cgi?id=1110723(security@debian.org)
https://github.com/rjbs/Email-Address/blob/master/Changes(security@debian.org)
https://github.com/rjbs/Email-Address/commit/83f8306117115729ac9346523762c0c396251eb5(security@debian.org)
https://metacpan.org/release/RJBS/Email-Address-1.905(security@debian.org)
http://seclists.org/oss-sec/2014/q2/563(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/59212(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/59333(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/61981(af854a3a-2127-422b-91ae-364da2661108)
http://www.debian.org/security/2014/dsa-2969(af854a3a-2127-422b-91ae-364da2661108)
https://bugzilla.redhat.com/show_bug.cgi?id=1110723(af854a3a-2127-422b-91ae-364da2661108)
https://github.com/rjbs/Email-Address/blob/master/Changes(af854a3a-2127-422b-91ae-364da2661108)
https://github.com/rjbs/Email-Address/commit/83f8306117115729ac9346523762c0c396251eb5(af854a3a-2127-422b-91ae-364da2661108)
https://metacpan.org/release/RJBS/Email-Address-1.905(af854a3a-2127-422b-91ae-364da2661108)
IOC Korrelationen
Keine Korrelationen erfasst
This product uses data from the NVD API but is not endorsed or certified by the NVD.