CVE-2018-18898: High severity bestpractical Request Tracker vulnerability
Last updated 25 August 2025
Other sources
The email-ingestion feature in Best Practical Request Tracker 4.1.13 through 4.4 allows denial of service by remote attackers via an algorithmic complexity attack on email address parsing.
— Launchpad
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-18898?
CVE-2018-18898 is a vulnerability in the email-ingestion feature of Best Practical Request Tracker, versions 4.1.13 through 4.4, that allows denial of service attacks.
How severe is CVE-2018-18898?
CVE-2018-18898 is considered a high severity vulnerability with a severity value of 7.5.
How can I fix CVE-2018-18898?
To fix CVE-2018-18898, you should update to a version of Best Practical Request Tracker that is not affected by the vulnerability.
Where can I find more information about CVE-2018-18898?
You can find more information about CVE-2018-18898 on the Best Practical website and the Fedora Project mailing list.
What is the Common Weakness Enumeration (CWE) associated with CVE-2018-18898?
The Common Weakness Enumeration (CWE) associated with CVE-2018-18898 is CWE-400.