CVE

CVE-2008-0072

Severity:
Pending analysis
Type:
CWE-134 Format String Vulnerability
Publication date:
06/03/2008
Last modified:
15/10/2018

Description

Format string vulnerability in the emf_multipart_encrypted function in mail/em-format.c in Evolution 2.12.3 and earlier allows remote attackers to execute arbitrary code via a crafted encrypted message, as demonstrated using the Version field.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:a:gnome:evolution:*:*:*:*:*:*:*:* 2.12.3 (including)