Email::Address module before 1.904 for Perl uses an inefficient regular expression, which allows remote attackers to cause a denial of service (CPU consumption) via vectors related to "backtracking into the phrase," a different vulnerability than CVE-2014-0477. <a href"http://cwe.mitre.org/data/definitions/185.html" target"_blank">CWE-185: CWE-185: Incorrect Regular Expression</a>
Publication date: Mon, 07 Jul 2014 04:55:00 +0000