Vulnerability Bulletins

DSA-2969 libemail-address-perl - security update

   
Affected software Debian
 
Bastian Blank reported a denial of service vulnerability inEmail::Address, a Perl module for RFC 2822 address parsing and creation.Email::Address::parse used significant time on parsing empty quotedstrings. A remote attacker able to supply specifically crafted input toan application using Email::Address for parsing, could use this flaw tomount a denial of service attack against the application.

More info:

https://www.debian.org/security/2014/dsa-2969