CVE-2017-8825
Last modified
CVE-2017-8825 is a vulnerability of currently unknown severity. A null dereference vulnerability has been found in the MIME handling component of LibEtPan before 1.8, as used in MailCore and MailCore 2. A crash can occur in low-level/imf/mailimf.c during a failed parse of a Cc header containing multiple e-mail addresses.. EPSS estimates a 1.84% chance of exploitation in the next 30 days.
Description
A null dereference vulnerability has been found in the MIME handling component of LibEtPan before 1.8, as used in MailCore and MailCore 2. A crash can occur in low-level/imf/mailimf.c during a failed parse of a Cc header containing multiple e-mail addresses.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Libetpan Project | Libetpan | <= 1.7.2 |
References
- https://github.com/dinhviethoa/libetpan/commit/1fe8fbc032ccda1db9af66d93016b49c16c1f22dPatch, Third Party Advisory
- https://github.com/dinhviethoa/libetpan/issues/274Third Party Advisory
- https://github.com/dinhviethoa/libetpan/releases/tag/1.8Release Notes, Third Party Advisory
- https://github.com/dinhviethoa/libetpan/commit/1fe8fbc032ccda1db9af66d93016b49c16c1f22dPatch, Third Party Advisory
- https://github.com/dinhviethoa/libetpan/issues/274Third Party Advisory
- https://github.com/dinhviethoa/libetpan/releases/tag/1.8Release Notes, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2017-8825?
How severe is CVE-2017-8825?
How do I fix CVE-2017-8825?
Are you affected by CVE-2017-8825?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
