An excessive memory use issue (CWE-770) exists in Email-MIME, before version 1.954, which can cause denial of service when parsing multipart MIME messages. The patch set (from 2020 and 2024) limits excessive depth and the total number of parts.
References
Configurations
History
No history.
Information
Published : 2024-05-02 20:15
Updated : 2025-08-26 17:21
NVD link : CVE-2024-4140
Mitre link : CVE-2024-4140
CVE.ORG link : CVE-2024-4140
JSON object : View
Products Affected
rjbs
- email-mime
fedoraproject
- fedora
CWE
CWE-770
Allocation of Resources Without Limits or Throttling
