An excessive memory use issue (CWE-770) exists in Email-MIME, before version 1.954, which can cause denial of service when parsing multipart MIME messages. The patch set (from 2020 and 2024) limits excessive depth and the total number of parts.
References
Configurations
No configuration.
History
No history.
Information
Published : 2024-05-02 20:15
Updated : 2024-06-10 18:15
NVD link : CVE-2024-4140
Mitre link : CVE-2024-4140
CVE.ORG link : CVE-2024-4140
JSON object : View
Products Affected
No product.
CWE
CWE-770
Allocation of Resources Without Limits or Throttling