Vulnerability Name: | CVE-2005-0102 (CCN-19031) | ||||||||||||||||||||||||
Assigned: | 2005-01-18 | ||||||||||||||||||||||||
Published: | 2005-01-18 | ||||||||||||||||||||||||
Updated: | 2018-10-03 | ||||||||||||||||||||||||
Summary: | Integer overflow in camel-lock-helper in Evolution 2.0.2 and earlier allows local users or remote malicious POP3 servers to execute arbitrary code via a length value of -1, which leads to a zero byte memory allocation and a buffer overflow. | ||||||||||||||||||||||||
CVSS v3 Severity: | 9.3 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||||||||||||||||||
CVSS v2 Severity: | 7.2 High (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C)
| ||||||||||||||||||||||||
Vulnerability Type: | CWE-Other | ||||||||||||||||||||||||
Vulnerability Consequences: | Gain Privileges | ||||||||||||||||||||||||
References: | Source: MITRE Type: CNA CVE-2005-0102 Source: CONECTIVA Type: Patch, Vendor Advisory CLA-2005:925 Source: CCN Type: evolution-patches Mailing List, Thu, 20 Jan 2005 13:49:12 +0800 camel lock helper security fix Source: CCN Type: RHSA-2005-238 evolution security update Source: CCN Type: RHSA-2005-397 evolution security update Source: CCN Type: SA13830 Evolution camel-lock-helper Integer Overflow Vulnerability Source: SECUNIA Type: UNKNOWN 13830 Source: GENTOO Type: Patch, Vendor Advisory GLSA-200501-35 Source: CCN Type: SECTRACK ID: 1012981 Evolution Integer Overflow in camel-lock-helper May Let Local and Remote Users Execute Arbitrary Code Source: SECTRACK Type: UNKNOWN 1012981 Source: DEBIAN Type: Patch, Vendor Advisory DSA-673 Source: DEBIAN Type: DSA-673 evolution -- integer overflow Source: CCN Type: GLSA-200501-35 Evolution: Integer overflow in camel-lock-helper Source: MANDRAKE Type: UNKNOWN MDKSA-2005:024 Source: REDHAT Type: UNKNOWN RHSA-2005:238 Source: REDHAT Type: Patch, Vendor Advisory RHSA-2005:397 Source: BID Type: Patch, Vendor Advisory 12354 Source: CCN Type: BID-12354 Novell Evolution Camel-Lock-Helper Application Remote Integer Overflow Vulnerability Source: CCN Type: USN-69-1 Evolution vulnerability Source: XF Type: UNKNOWN evolution-camellockhelper-bo(19031) Source: XF Type: UNKNOWN evolution-camellockhelper-bo(19031) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:9616 Source: UBUNTU Type: UNKNOWN USN-69-1 Source: SUSE Type: SUSE-SR:2005:003 SUSE Security Summary Report | ||||||||||||||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration RedHat 1: Configuration CCN 1: ![]() | ||||||||||||||||||||||||
Oval Definitions | |||||||||||||||||||||||||
| |||||||||||||||||||||||||
BACK |