Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

Mandriva: Updated Evolution packages fix vulnerabilities

BugsAlert Home > Mandriva: Updated Evolution packages fix vulnerabilities
 
 

LinuxSecurity.com: Alan Rad Pop of Secunia Research discovered the following two vulnerabilities in Evolution: Evolution did not properly validate timezone data when processing iCalendar attachments. If a user disabled the Itip Formatter plugin and viewed a crafted iCalendar attachment, an attacker could cause a denial of service or potentially execute arbitrary code with the user's privileges (CVE-2008-1108).




Original Source: http://www.linuxsecurity.com/content/view/138358?rdf

Learn more about Mandriva: Updated Evolution packages fix vulnerabilities
 
Tags: mandriva updated evolution packages fix vulnerabilities

Related Items

      Bugtraq: Re: Media Player Classic 6.4.9 MP4 Stack Overflow 0-day

      CVE-2008-1808 (FreeType)

      Debian: New ruby1.8 packages fix insecure SSL certificate

      Vuln: WebEx Meeting Manager 'atucfobj.dll' ActiveX Control Remote Buffer Overflow Vulnerability

      CheckInstall Insecure Temporary Files

      CVE-2008-4036 (windows_server_2003, windows_server_2008, windows_vista, windows_xp)

      Gentoo: PowerDNS Multiple vulnerabilities

 

Pixel