Lucene search

K
osvGoogleOSV:GHSA-WRVR-8MPX-R7PP
HistoryJul 20, 2018 - 4:20 p.m.

mime Regular Expression Denial of Service when MIME lookup performed on untrusted user input

2018-07-2016:20:52
Google
osv.dev
19

7.4 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

47.9%

Affected versions of mime are vulnerable to regular expression denial of service when a mime lookup is performed on untrusted user input.

Recommendation

Update to version 2.0.3 or later.

CPENameOperatorVersion
mimelt1.4.1
mimege2.0.0
mimelt2.0.3

7.4 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

47.9%