← Back

CVE-2018-18898

nvd nist
Published: Mar 21, 2019Modified: Nov 21, 2024

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

The email-ingestion feature in Best Practical Request Tracker 4.1.13 through 4.4 allows denial of service by remote attackers via an algorithmic complexity attack on email address parsing.

Affected (7)

Show all products
1 product
Request Tracker
1 product
Fedora
1 product
Ubuntu Linux
1 product
Debian Linux
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 4.1.13 to 4.4.0
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Fedoraproject
Version 28
Version 29
Configuration C
2 vulnerable
Vulnerable SoftwareAffected Versions
Canonical
Version 16.04
Version 18.04
Configuration D
2 vulnerable
Vulnerable SoftwareAffected Versions
Debian
Version 10.0
Version 8.0

Timeline

No history available yet.