CVE-2008-0072: Medium severity linux kernel vulnerability
Published Mar 6, 2008
·Updated
Format string vulnerability in the emfmultipartencrypted function in mail/em-format.c in Evolution 2.12.3 and earlier allows remote attackers to execute arbitrary code via a crafted encrypted message, as demonstrated using the Version field.
Affected Software
2 affected components
Linux Linux kernel
Gnome Evolution<=2.12.3
Remediation
Patch Available
Event History
Mar 6, 2008
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
12:44 AM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2008-0072?
CVE-2008-0072 is considered a critical vulnerability as it allows remote attackers to execute arbitrary code.
2
How do I fix CVE-2008-0072?
To fix CVE-2008-0072, upgrade GNOME Evolution to a version later than 2.12.3.
3
What software is affected by CVE-2008-0072?
CVE-2008-0072 affects GNOME Evolution version 2.12.3 and earlier.
4
Can CVE-2008-0072 be exploited remotely?
Yes, CVE-2008-0072 can be exploited remotely through a crafted encrypted message.
5
What are the potential impacts of CVE-2008-0072?
The potential impacts of CVE-2008-0072 include arbitrary code execution, which could lead to data breaches or system compromise.