Boletines de Vulnerabilidades

DSA-2969 libemail-address-perl - security update


Información sobre el sistema

   
Software afectado Debian

Descripción

Bastian Blank reported a denial of service vulnerability inEmail::Address, a Perl module for RFC 2822 address parsing and creation.Email::Address::parse used significant time on parsing empty quotedstrings. A remote attacker able to supply specifically crafted input toan application using Email::Address for parsing, could use this flaw tomount a denial of service attack against the application.

More info:

https://www.debian.org/security/2014/dsa-2969

Identificadores estándar

Propiedad Valor
CVE CVE-2014-0477 and DSA-2969.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-06-28

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT