CVE-2017-8825: Null Pointer Dereference
Published May 8, 2017
·Updated
A null dereference vulnerability has been found in the MIME handling component of LibEtPan before 1.8, as used in MailCore and MailCore 2. A crash can occur in low-level/imf/mailimf.c during a failed parse of a Cc header containing multiple e-mail addresses.
Affected Software
1 affected component
Libetpan Project Libetpan<=1.7.2
Remediation
Event History
May 8, 2017
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-8825?
CVE-2017-8825 is categorized as a critical vulnerability due to its potential to cause application crashes.
2
How do I fix CVE-2017-8825?
To fix CVE-2017-8825, upgrade LibEtPan to version 1.8 or later.
3
What software is affected by CVE-2017-8825?
CVE-2017-8825 affects all versions of LibEtPan before 1.8, including MailCore and MailCore 2.
4
What type of vulnerability is CVE-2017-8825?
CVE-2017-8825 is a null dereference vulnerability found in the MIME handling component.
5
What happens if CVE-2017-8825 is exploited?
If CVE-2017-8825 is exploited, a crash may occur during the parsing of a malformed Cc header containing multiple email addresses.