Lucene search

K
alpinelinuxAlpine Linux Development TeamALPINE:CVE-2024-24784
HistoryMar 05, 2024 - 11:15 p.m.

CVE-2024-24784

2024-03-0523:15:07
Alpine Linux Development Team
security.alpinelinux.org
7
cve-2024-24784
misaligned parsers
trust decisions
unix

7.4 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

10.4%

The ParseAddressList function incorrectly handles comments (text within parentheses) within display names. Since this is a misalignment with conforming address parsers, it can result in different trust decisions being made by programs using different parsers.

OSVersionArchitecturePackageVersionFilename
Alpineedge-communitynoarchgo< 1.22.1-r0UNKNOWN
Alpine3.19-communitynoarchgo< 1.21.8-r0UNKNOWN
Alpine3.20-communitynoarchgo< 1.22.1-r0UNKNOWN