5

CVE-2006-0528

Exploit

The cairo library (libcairo), as used in GNOME Evolution and possibly other products, allows remote attackers to cause a denial of service (persistent client crash) via an attached text file that contains "Content-Disposition: inline" in the header, and a very long line in the body, which causes the client to repeatedly crash until the e-mail message is manually removed, possibly due to a buffer overflow, as demonstrated using an XML attachment.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
GnomeEvolution Version2.3.1
GnomeEvolution Version2.3.2
GnomeEvolution Version2.3.3
GnomeEvolution Version2.3.4
GnomeEvolution Version2.3.5
GnomeEvolution Version2.3.6
GnomeEvolution Version2.3.6.1
GnomeEvolution Version2.3.7
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 5.11% 0.888
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P