Secunia Logo
 
CVE Reference: CVE-2005-2549
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2005-2549

Description:
Multiple format string vulnerabilities in Evolution 1.5 through 2.3.6.1 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via (1) full vCard data, (2) contact data from remote LDAP servers, or (3) task list data from remote servers.

CVE Status:
Candidate

References:

UBUNTU
  http://www.ubuntulinux.org/support/documentation/usn/usn-166-1

SUSE
  http://www.novell.com/linux/security/advisories/2005_54_evolution.html

SAID
  Secunia Advisory: SA19380
  Secunia Advisory: SA16394

REDHAT
  http://www.redhat.com/support/errata/RHSA-2005-267.html

MISC
  http://www.sitic.se/eng/advisories_and_recommendations/sa05-001.html

MANDRIVA
  http://www.mandriva.com/security/advisories?name=MDKSA-2005:141

FULLDISC
  http://marc.theaimsgroup.com/?l=full-disclosure&m=112368237712032&w=2

FEDORA
  http://www.redhat.com/archives/fedora-announce-list/2005-August/msg00031.html

DEBIAN
  http://www.debian.org/security/2006/dsa-1016

BUGTRAQ
  http://www.securityfocus.com/archive/1/407789

BID
  14532


Return to the previous page.