PT-2005-3442 · Evolution+1 · Evolution+1

Ulf Härnhammar

·

Publicado

2005-08-12

·

Atualizado

2018-10-03

·

CVE-2005-2549

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Evolution versions 1.5 through 2.3.6.1
Description The issue allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via multiple format string vulnerabilities. These vulnerabilities can be exploited through full vCard data, contact data from remote LDAP servers, or task list data from remote servers.
Recommendations For Evolution versions 1.5 through 2.3.6.1, update to a version that contains a fix for this issue to prevent potential exploitation.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2005-2549
DSA-1016-1
DTSA-13-1
RHSA-2005:267
RHSA-2005_267

Produtos afetados

Evolution
Red Hat