CVE Vulnerabilities

CVE-2007-3257

Published: Jun 19, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Camel (camel-imap-folder.c) in the mailer component for Evolution Data Server 1.11 allows remote IMAP servers to execute arbitrary code via a negative SEQUENCE value in GData, which is used as an array index.

Affected Software

NameVendorStart VersionEnd Version
EvolutionGnome1.11 (including)1.11 (including)
Red Hat Enterprise Linux 3RedHatevolution-0:1.4.5-21.el3*
Red Hat Enterprise Linux 4RedHatevolution-0:2.0.2-35.0.4.el4*
Red Hat Enterprise Linux 5RedHatevolution-data-server-0:1.8.0-15.0.4.el5*
Evolution-data-serverUbuntudapper*
Evolution-data-serverUbuntuedgy*
Evolution-data-serverUbuntufeisty*
Evolution-data-serverUbuntuupstream*

References