CVE Vulnerabilities

CVE-2014-1474

Published: Jul 15, 2014 | Modified: Jul 15, 2014
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

Algorithmic complexity vulnerability in Email::Address::List before 0.02, as used in RT 4.2.0 through 4.2.2, allows remote attackers to cause a denial of service (CPU consumption) via a string without an address.

Affected Software

Name Vendor Start Version End Version
Rt Bestpractical 4.2.0 (including) 4.2.0 (including)
Rt Bestpractical 4.2.1 (including) 4.2.1 (including)
Rt Bestpractical 4.2.2 (including) 4.2.2 (including)
Email::address::list Email::address::list_project * 0.01 (including)
Libemail-address-list-perl Ubuntu upstream *

References