Description
Format string vulnerability in the write_html function in calendar/gui/e-cal-component-memo-preview.c in Evolution Shared Memo 2.8.2.1, and possibly earlier versions, allows user-assisted remote attackers to execute arbitrary code via format specifiers in the categories of a crafted shared memo.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-1325-1 | New evolution packages fix arbitrary code execution |
Ubuntu USN |
USN-442-1 | Evolution vulnerability |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-07T12:43:22.417Z
Reserved: 2007-02-16T00:00:00.000Z
Link: CVE-2007-1002
No data.
Status : Modified
Published: 2007-03-21T22:19:00.000
Modified: 2026-04-23T00:35:47.467
Link: CVE-2007-1002
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA
Ubuntu USN