First published: Thu Mar 06 2008(Updated: )
Format string vulnerability in the emf_multipart_encrypted function in mail/em-format.c in Evolution 2.12.3 and earlier allows remote attackers to execute arbitrary code via a crafted encrypted message, as demonstrated using the Version field.
Credit: PSIRT-CNA@flexerasoftware.com
Affected Software | Affected Version | How to fix |
---|---|---|
Linux kernel | ||
GNOME Evolution | <=2.12.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-0072 is considered a critical vulnerability as it allows remote attackers to execute arbitrary code.
To fix CVE-2008-0072, upgrade GNOME Evolution to a version later than 2.12.3.
CVE-2008-0072 affects GNOME Evolution version 2.12.3 and earlier.
Yes, CVE-2008-0072 can be exploited remotely through a crafted encrypted message.
The potential impacts of CVE-2008-0072 include arbitrary code execution, which could lead to data breaches or system compromise.