5
CVSSv2

CVE-2006-0528

Published: 02/02/2006 Updated: 03/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The cairo library (libcairo), as used in GNOME Evolution and possibly other products, allows remote malicious users to cause a denial of service (persistent client crash) via an attached text file that contains "Content-Disposition: inline" in the header, and a very long line in the body, which causes the client to repeatedly crash until the e-mail message is manually removed, possibly due to a buffer overflow, as demonstrated using an XML attachment.

Vulnerable Product Search on Vulmon Subscribe to Product

gnome evolution 2.3.3

gnome evolution 2.3.4

gnome evolution 2.3.5

gnome evolution 2.3.7

gnome evolution 2.3.1

gnome evolution 2.3.2

gnome evolution 2.3.6

gnome evolution 2.3.6.1

Vendor Advisories

When rendering glyphs, the cairo graphics rendering library did not check the maximum length of character strings A request to display an excessively long string with cairo caused a program crash due to an X library error ...

Exploits

source: wwwsecurityfocuscom/bid/16408/info GNOME Evolution email client is prone to a denial-of-service vulnerability when processing messages containing inline XML file attachments with excessively long strings perl -e 'printf "A"x40000' > evolution-dos-pocxml ...