Описание
Evolution 2.22.3.1 checks S/MIME signatures against a copy of the e-mail text within a signed-data blob, not the copy of the e-mail text displayed to the user, which allows remote attackers to spoof a signature by modifying the latter copy, a different vulnerability than CVE-2008-5077.
Релиз | Статус | Примечание |
---|---|---|
dapper | ignored | end of life |
devel | not-affected | |
gutsy | ignored | end of life, was needed |
hardy | ignored | end of life |
intrepid | ignored | end of life, was needed |
jaunty | not-affected | 2.26.1-0ubuntu2 |
karmic | not-affected | |
lucid | not-affected | |
maverick | not-affected | |
natty | not-affected |
Показывать по
Ссылки на источники
5 Medium
CVSS2
Связанные уязвимости
Evolution 2.22.3.1 checks S/MIME signatures against a copy of the e-mail text within a signed-data blob, not the copy of the e-mail text displayed to the user, which allows remote attackers to spoof a signature by modifying the latter copy, a different vulnerability than CVE-2008-5077.
Evolution 2.22.3.1 checks S/MIME signatures against a copy of the e-mail text within a signed-data blob, not the copy of the e-mail text displayed to the user, which allows remote attackers to spoof a signature by modifying the latter copy, a different vulnerability than CVE-2008-5077.
Evolution 2.22.3.1 checks S/MIME signatures against a copy of the e-ma ...
Evolution 2.22.3.1 checks S/MIME signatures against a copy of the e-mail text within a signed-data blob, not the copy of the e-mail text displayed to the user, which allows remote attackers to spoof a signature by modifying the latter copy, a different vulnerability than CVE-2008-5077.
ELSA-2009-0354: evolution-data-server security update (MODERATE)
5 Medium
CVSS2