2.6

CVE-2006-2789

Evolution 2.2.x and 2.3.x in GNOME 2.7 and 2.8, when "load images if sender in addressbook" is enabled, allows remote attackers to cause a denial of service (persistent crash) via a crafted "From" header that triggers an assert error in camel-internet-address.c when a null pointer is used.

Data is provided by the National Vulnerability Database (NVD)
GnomeEvolution Version2.3.1
GnomeEvolution Version2.3.2
GnomeEvolution Version2.3.3
GnomeEvolution Version2.3.4
GnomeEvolution Version2.3.5
GnomeEvolution Version2.3.6
GnomeEvolution Version2.3.6.1
GnomeEvolution Version2.3.7
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.79% 0.728
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 2.6 4.9 2.9
AV:N/AC:H/Au:N/C:N/I:N/A:P