Описание
Integer overflow in camel-lock-helper in Evolution 2.0.2 and earlier allows local users or remote malicious POP3 servers to execute arbitrary code via a length value of -1, which leads to a zero byte memory allocation and a buffer overflow.
Ссылки
- Broken LinkPatchVendor Advisory
- Broken Link
- Third Party Advisory
- Broken LinkThird Party AdvisoryVDB Entry
- Mailing ListPatchThird Party Advisory
- Third Party Advisory
- Broken Link
- Broken LinkPatchVendor Advisory
- Broken LinkPatchThird Party AdvisoryVDB EntryVendor Advisory
- Third Party AdvisoryVDB Entry
- Broken Link
- Broken Link
- Broken LinkPatchVendor Advisory
- Broken Link
- Third Party Advisory
- Broken LinkThird Party AdvisoryVDB Entry
- Mailing ListPatchThird Party Advisory
- Third Party Advisory
- Broken Link
- Broken LinkPatchVendor Advisory
Уязвимые конфигурации
EPSS
9.8 Critical
CVSS3
7.2 High
CVSS2
Дефекты
Связанные уязвимости
Integer overflow in camel-lock-helper in Evolution 2.0.2 and earlier allows local users or remote malicious POP3 servers to execute arbitrary code via a length value of -1, which leads to a zero byte memory allocation and a buffer overflow.
Integer overflow in camel-lock-helper in Evolution 2.0.2 and earlier allows local users or remote malicious POP3 servers to execute arbitrary code via a length value of -1, which leads to a zero byte memory allocation and a buffer overflow.
Integer overflow in camel-lock-helper in Evolution 2.0.2 and earlier a ...
Integer overflow in camel-lock-helper in Evolution 2.0.2 and earlier allows local users or remote malicious POP3 servers to execute arbitrary code via a length value of -1, which leads to a zero byte memory allocation and a buffer overflow.
EPSS
9.8 Critical
CVSS3
7.2 High
CVSS2