CVE-2017-17846 PUBLISHED

An issue was discovered in Enigmail before 1.9.9. Regular expressions are exploitable for Denial of Service, because of attempts to match arbitrarily long strings, aka TBE-01-003.

EPSS 0.78% · 73.6th percentile

Risk Scores

EPSS Score
0.78%
73.6th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSenigmail0, 2:1.5.2-0ubuntu1, 2:1.7-0ubuntu0.14.04.1
Ubuntu:16.04:LTSenigmail0, 2:1.8.2-0ubuntu1, 2:1.8.2-4fakesync1

Timeline

References

Open in Interactive Console →