CVE-2014-4720: Medium severity Email\ \ vulnerability
Email::Address module before 1.904 for Perl uses an inefficient regular expression, which allows remote attackers to cause a denial of service (CPU consumption) via vectors related to "backtracking into the phrase," a different vulnerability than CVE-2014-0477.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-4720?
CVE-2014-4720 is classified as a denial of service vulnerability due to excessive CPU consumption caused by inefficient regular expressions in the Email::Address module.
How do I fix CVE-2014-4720?
To fix CVE-2014-4720, you should update the Email::Address module to version 1.904 or later.
What versions are affected by CVE-2014-4720?
CVE-2014-4720 affects Email::Address versions prior to 1.904.
Can CVE-2014-4720 lead to remote attacks?
Yes, CVE-2014-4720 allows remote attackers to exploit the vulnerability to cause a denial of service.
What programming language is impacted by CVE-2014-4720?
CVE-2014-4720 affects the Perl programming language due to the Email::Address module.