High severity7.5NVD Advisory· Published Mar 21, 2019· Updated Jun 17, 2026
CVE-2018-18898
CVE-2018-18898
Description
The email-ingestion feature in Best Practical Request Tracker 4.1.13 through 4.4 allows denial of service by remote attackers via an algorithmic complexity attack on email address parsing.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
9- Range: >=4.1.13,<=4.4
cpe:2.3:a:bestpractical:request_tracker:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:bestpractical:request_tracker:*:*:*:*:*:*:*:*range: >=4.1.13,<=4.4.0
- (no CPE)range: 4.1.13 - 4.4
cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:esm:*:*:*+ 1 more
- cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:esm:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*
cpe:2.3:o:fedoraproject:fedora:28:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:fedoraproject:fedora:28:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:29:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
5- lists.debian.org/debian-lts-announce/2020/02/msg00009.htmlnvdMailing ListThird Party Advisory
- usn.ubuntu.com/4517-1/nvdThird Party Advisory
- bestpractical.com/download-pagenvdProductRelease Notes
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CPJVDT77ZPRU5Z2BEMZM7EBY6WZHUATZ/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YR46PPHBEM76DNN4DEQMAYIKLCO3TQU2/nvd
News mentions
0No linked articles in our index yet.