CVE-2002-1765

5 documents5 sources
Severity
5.0MEDIUM
EPSS
0.9%
top 24.15%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 31
Latest updateApr 30

Description

Evolution 1.0.3 and 1.0.4 allows remote attackers to cause a denial of service (memory consumption and crash) via an email with a malformed MIME header.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages2 packages

Debianevolution< 1.0.5+3
NVDximian/evolution1.0.3, 1.0.4+1

Patches

🔴Vulnerability Details

3
GHSA
GHSA-g942-9jhf-qjgc: Evolution 12022-04-30
CVEList
CVE-2002-1765: Evolution 12005-06-21
OSV
CVE-2002-1765: Evolution 12002-12-31

📋Vendor Advisories

1
Debian
CVE-2002-1765: evolution - Evolution 1.0.3 and 1.0.4 allows remote attackers to cause a denial of service (...2002
CVE-2002-1765 (MEDIUM CVSS 5) | Evolution 1.0.3 and 1.0.4 allows re | cvebase.io