CVE Vulnerabilities

CVE-2007-1002

Published: Mar 21, 2007 | Modified: Oct 16, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Format string vulnerability in the write_html function in calendar/gui/e-cal-component-memo-preview.c in Evolution Shared Memo 2.8.2.1, and possibly earlier versions, allows user-assisted remote attackers to execute arbitrary code via format specifiers in the categories of a crafted shared memo.

Affected Software

Name Vendor Start Version End Version
Shared_memo Evolution 2.8.2.1 (including) 2.8.2.1 (including)
Red Hat Enterprise Linux 5 RedHat evolution-0:2.8.0-33.0.1.el5 *
Evolution Ubuntu dapper *
Evolution Ubuntu edgy *
Evolution Ubuntu feisty *
Evolution Ubuntu upstream *

References