Solution
Please Install the Updated Packages.
Insight
Evolution is the GNOME collection of personal information management (PIM) tools.
A format string flaw was found in the way Evolution displayed encrypted mail content. If a user opened a carefully crafted mail message, arbitrary code could be executed as the user running Evolution. (CVE-2008-0072)
All users of Evolution should upgrade to these updated packages, which contain a backported patch which resolves this issue.
Red Hat would like to thank Ulf Härnhammar of Secunia Research for finding and reporting this issue.
Affected
evolution on CentOS 4
References
Updated on 2015-03-25
Severity
Classification
-
CVE CVE-2008-0072 -
CVSS Base Score: 6.8
AV:N/AC:M/Au:N/C:P/I:P/A:P
Related Vulnerabilities