Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in Evolution 2.22.1, when the ITip Formatter plugin is disabled, allows remote attackers to execute arbitrary code via a long timezone string in an iCalendar attachment.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Evolution 时区附件数据解析方式缓冲区溢出漏洞
Vulnerability Description
Evolution是GNOME项目的一套用于Linux下Gnome桌面环境的邮件客户端程序。该程序提供Email、日历、会议安排、联系人管理等功能。 Evolution解析iCalendar时区附件数据的方式存在栈溢出漏洞,如果禁用了Itip Formatter插件且用户打开了带有特制iCalendar附件的邮件,就会以运行Evolution用户的权限执行任意指令。
CVSS Information
N/A
Vulnerability Type
N/A