Bug 2547133 (CVE-2026-106454)
| Summary: | CVE-2026-106454 twisted: Twisted: Denial of Service via regular expression backtracking in IMAP search patterns | ||
|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | OSIDB Bzimport <bzimport> |
| Component: | vulnerability | Assignee: | Product Security DevOps Team <prodsec-dev> |
| Status: | NEW --- | QA Contact: | |
| Severity: | medium | Docs Contact: | |
| Priority: | medium | ||
| Version: | unspecified | CC: | akhatavk, aos-team-art-private, asdas, dpaolell, dschmidt, eglynn, ikhan, jdelft, jjoyce, jlanda, jpretori, jschluet, jupierce, jwong, kshier, lgarciaa, lhh, mbiarnes, mburns, mgarciac, omaciel, ppalepu, ppostler, prdhamdh, rbobbitt, sghai, sidsharm, simaishi, stcannon, suppawar, ttakamiy, vlaad, yguenane |
| Target Milestone: | --- | Keywords: | Security |
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | --- | |
| Doc Text: |
A flaw was found in Twisted. An authenticated remote attacker can cause a Denial of Service (DoS) by submitting specially crafted mailbox search queries using Internet Message Access Protocol (IMAP) commands such as LIST or LSUB. Because the server fails to properly sanitize these search patterns before compiling them, complex patterns can trigger excessive processing delays known as regular expression catastrophic backtracking. Due to the framework's single-threaded event loop, this blocking operation halts all server traffic, rendering the application unresponsive to other clients.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | Type: | --- | |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
|
Description
OSIDB Bzimport
2026-10-06 20:02:25 UTC
|