Evolution Format String Bug in Encrypted E-mail emf_multipart_encrypted() Function Lets Remote Users Execute Arbitrary Code
|
|
SecurityTracker Alert ID: 1019540
|
|
SecurityTracker URL: http://securitytracker.com/id?1019540
|
|
CVE Reference: CVE-2008-0072
(Links to External Site)
|
Date: Mar 5 2008
|
Impact: Execution of arbitrary code via network, User access via network
|
Vendor Confirmed: Yes
|
Advisory: Secunia Research
|
Version(s): 2.12.3
|
Description: A vulnerability was reported in Evolution. A remote user can execute arbitrary code on the target system.
A remote user can send a specially crafted e-mail message to trigger a format string flaw in emf_multipart_encrypted() and execute
arbitrary code on the target system. The code will run with the privileges of
The vulnerability resides in 'mail/em-format.c'.
A specially crafted 'Version:' field in an encrypted e-mail message can trigger the flaw.
The vendor was notified on March 3,
2008.
Ulf Harnhammar of Secunia Research reported this vulnerability.
|
Impact: A remote user can execute arbitrary code on the target system.
|
Solution: No solution was available at the time of this entry.
|
Vendor URL: www.gnome.org/projects/evolution/ (Links to External Site)
|
Cause: Input validation error, State error
|
Underlying OS: Linux (Any)
|
|
Message History:
This archive entry has one or more follow-up message(s) listed below.
|
Source Message Contents
|
Date: Wed, 5 Mar 2008 05:58:47 -0500
Subject: Evolution
|
http://secunia.com/secunia_research/2008-8/advisory/
CVE-2008-0072
|
|