CVE-2018-12558

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
20/06/2018
Last modified:
02/04/2019

Description

The parse() method in the Email::Address module through 1.909 for Perl is vulnerable to Algorithmic complexity on specially prepared input, leading to Denial of Service. Prepared special input that caused this problem contained 30 form-field characters ("\f").

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:email\:\:address_module_project:email\:\:address:*:*:*:*:*:perl:*:* 1.909 (including)