GNOME / Evolution
21 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2009-3721 | evolution: TNEF attachment decoder input sanitization errors (oCERT-2009-013) | HIGH | 7.8 | May 26, 2021 |
| CVE-2021-3349 | evolution-data-server: mail is shown as having a valid signature from an unknown identifier on a previously trusted key | LOW | 3.3 | Feb 1, 2021 |
| CVE-2020-11879 | evolution: attaching local filed/directories to composed email can lead to unintended information disclosure | MEDIUM | 6.5 | Apr 17, 2020 |
| CVE-2013-4166 | evolution: incorrect selection of recipient gpg public key for encrypted mail | HIGH | 7.5 | Feb 6, 2020 |
| CVE-2018-15587 | evolution: specially crafted email leading to OpenPGP signatures being spoofed for arbitrary messages | MEDIUM | 6.5 | Feb 11, 2019 |
| CVE-2016-10727 | evolution-data-server: IMAPx Component Information Disclosure | CRITICAL | 9.8 | Jul 20, 2018 |
| CVE-2018-12422 | evolution-data-server: Unsafe use of strcat allows buffer overflow in addressbook/backends/ldap/e-book-backend-ldap.c | CRITICAL | 9.8 | Jun 15, 2018 |
| CVE-2017-17689 | S/MIME: CBC gadget attacks allows to exfiltrate plaintext out of encrypted emails | MEDIUM | 5.9 | May 16, 2018 |
| CVE-2011-3201 | evolution: mailto URL scheme attachment header improper input validation | MEDIUM | 4.3 | Mar 8, 2013 |
| CVE-2009-1631 | evolution: insecure permissions on evolution mailbox folders | LOW | 2.1 | May 14, 2009 |
| CVE-2008-1109 | evolution: iCalendar buffer overflow via large description parameter | HIGH | 9.3 | Jun 4, 2008 |
| CVE-2008-1108 | evolution: iCalendar buffer overflow via large timezone specification | HIGH | 7.6 | Jun 4, 2008 |
| CVE-2008-0072 | Evolution format string flaw | MEDIUM | 6.8 | Mar 6, 2008 |
| CVE-2007-3257 | evolution malicious server arbitrary code execution | MEDIUM | 6.8 | Jun 19, 2007 |
| CVE-2007-1266 | Evolution 2.8.1 and earlier does not properly use the --status-fd argument when invoking GnuPG, which prevents Evolution from visually distinguishing between s… | MEDIUM | 5.0 | Mar 6, 2007 |
| CVE-2006-2789 | Evolution 2.2.x and 2.3.x in GNOME 2.7 and 2.8, when "load images if sender in addressbook" is enabled, allows remote attackers to cause a denial of service (p… | LOW | 2.6 | Jun 2, 2006 |
| CVE-2006-0040 | DoS from large email | MEDIUM | 5.0 | Mar 10, 2006 |
| CVE-2006-0528 | The cairo library (libcairo), as used in GNOME Evolution and possibly other products, allows remote attackers to cause a denial of service (persistent client c… | MEDIUM | 5.0 | Feb 2, 2006 |
| CVE-2005-2550 | security flaw | HIGH | 7.5 | Aug 12, 2005 |
| CVE-2005-2549 | security flaw | HIGH | 7.5 | Aug 12, 2005 |
| CVE-2005-0102 | security flaw | CRITICAL | 9.8 | Jan 29, 2005 |
Showing 1 to 21 of 21 CVEs