GNOME Evolution Inline XML File Attachment Buffer Overflow Vulnerability
BID:16408
Info
GNOME Evolution Inline XML File Attachment Buffer Overflow Vulnerability
| Bugtraq ID: | 16408 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 28 2006 12:00AM |
| Updated: | Dec 12 2006 10:48PM |
| Credit: | Discovered by Mike Davis <[email protected]>. |
| Vulnerable: |
Ubuntu Ubuntu Linux 5.10 powerpc Ubuntu Ubuntu Linux 5.10 i386 Ubuntu Ubuntu Linux 5.10 amd64 S.u.S.E. Linux Professional 10.0 OSS S.u.S.E. Linux Professional 9.3 x86_64 S.u.S.E. Linux Professional 9.3 S.u.S.E. Linux Personal 10.0 OSS S.u.S.E. Linux Personal 9.3 x86_64 S.u.S.E. Linux Personal 9.3 Mandriva Linux Mandrake 2006.0 x86_64 Mandriva Linux Mandrake 2006.0 GNOME Evolution 2.3.7 GNOME Evolution 2.3.6 .1 GNOME Evolution 2.3.6 GNOME Evolution 2.3.5 GNOME Evolution 2.3.4 GNOME Evolution 2.3.3 GNOME Evolution 2.3.2 GNOME Evolution 2.3.1 GNOME Evolution 2.2.3 |
| Not Vulnerable: | |
Discussion
GNOME Evolution Inline XML File Attachment Buffer Overflow Vulnerability
GNOME Evolution email client is prone to a denial-of-service vulnerability when processing messages containing inline XML file attachments with excessively long strings.
GNOME Evolution email client is prone to a denial-of-service vulnerability when processing messages containing inline XML file attachments with excessively long strings.
Exploit / POC
GNOME Evolution Inline XML File Attachment Buffer Overflow Vulnerability
Mike Davis provided the following proof of concept:
perl -e 'printf "A"x40000' > evolution-dos-poc.xml
Mike Davis provided the following proof of concept:
perl -e 'printf "A"x40000' > evolution-dos-poc.xml
Solution / Fix
GNOME Evolution Inline XML File Attachment Buffer Overflow Vulnerability
Solution:
Please see the references for more information and fixes.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]:[email protected].
GNOME Evolution 2.2.3
Solution:
Please see the references for more information and fixes.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]:[email protected].
GNOME Evolution 2.2.3
-
Mandriva lib64cairo2-1.0.0-8.1.20060mdk.x86_64.rpm
Mandriva Linux 2006.0/X86_64:
http://wwwnew.mandriva.com/en/downloads/ -
Mandriva lib64cairo2-devel-1.0.0-8.1.20060mdk.x86_64.rpm
Mandriva Linux 2006.0/X86_64:
http://wwwnew.mandriva.com/en/downloads/ -
Mandriva lib64cairo2-static-devel-1.0.0-8.1.20060mdk.x86_64.rpm
Mandriva Linux 2006.0/X86_64:
http://wwwnew.mandriva.com/en/downloads/ -
Mandriva libcairo2-1.0.0-8.1.20060mdk.i586.rpm
Mandriva Linux 2006.0:
http://wwwnew.mandriva.com/en/downloads/ -
Mandriva libcairo2-devel-1.0.0-8.1.20060mdk.i586.rpm
Mandriva Linux 2006.0:
http://wwwnew.mandriva.com/en/downloads/ -
Mandriva libcairo2-static-devel-1.0.0-8.1.20060mdk.i586.rpm
Mandriva Linux 2006.0:
http://wwwnew.mandriva.com/en/downloads/
References
GNOME Evolution Inline XML File Attachment Buffer Overflow Vulnerability
References:
References:
- Evolution Product Page (GNOME)