| Gnome Evolution iCalendar Multiple Buffer Overflow Vulnerabilities |
|
Credit:
| Alin Rad Pop, Secunia Research |
|
Description:
|
Gnome Evolution is prone to multiple buffer-overflow vulnerabilities because it fails to adequately bounds-check user-supplied input before copying it to insufficiently sized buffers. The issues arise when the application handles the iCalendar attachments.
Successfully exploiting these issues will allow an attacker to execute arbitrary code in the context of the application. Failed exploit attempts will likely crash the application.
Gnome Evolution 2.21.1 is vulnerable to these issues; other versions may also be affected.
|
| Exploit:
|
Currently SecuMania is not aware of any exploits for this issue.
If you are aware of more recent information, please mail us at: vul[at]SecuMania.org. |
|
Solution:
| Currently SecuMania is not aware of any solution for this issue.
If you are aware of more recent information, please mail us at: vul[at]SecuMania.org. |