CVE-2017-8825: Libetpan Project Libetpan

High severity, CVSS 7.5. EPSS: 1.8% chance of exploitation in the next 30 days.

A null dereference vulnerability has been found in the MIME handling component of LibEtPan before 1.8, as used in MailCore and MailCore 2. A crash can occur in low-level/imf/mailimf.c during a failed parse of a Cc header containing multiple e-mail addresses.

Affected products

Published 2017-05-08. Last modified 2026-06-17.