Evolution 2.2.x and 2.3.x in GNOME 2.7 and 2.8, when load images if sender in addressbook is enabled, allows remote attackers to cause a denial of service (persistent crash) via a crafted From header that triggers an assert error in camel-internet-address.c when a null pointer is used.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Evolution | Gnome | 2.3.1 (including) | 2.3.1 (including) |
Evolution | Gnome | 2.3.2 (including) | 2.3.2 (including) |
Evolution | Gnome | 2.3.3 (including) | 2.3.3 (including) |
Evolution | Gnome | 2.3.4 (including) | 2.3.4 (including) |
Evolution | Gnome | 2.3.5 (including) | 2.3.5 (including) |
Evolution | Gnome | 2.3.6 (including) | 2.3.6 (including) |
Evolution | Gnome | 2.3.6.1 (including) | 2.3.6.1 (including) |
Evolution | Gnome | 2.3.7 (including) | 2.3.7 (including) |