CVE-2005-0102
published 2005-01-24CVE-2005-0102: Integer overflow in camel-lock-helper in Evolution 2.0.2 and earlier allows local users or remote malicious POP3 servers to execute arbitrary code via a length…
PriorityP430critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
3.18%
86.7th percentile
Integer overflow in camel-lock-helper in Evolution 2.0.2 and earlier allows local users or remote malicious POP3 servers to execute arbitrary code via a length value of -1, which leads to a zero byte memory allocation and a buffer overflow.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | evolution | < evolution 2.0.3-1.2 (bookworm) | evolution 2.0.3-1.2 (bookworm) |
| gnome | evolution | <= 2.0.2 | — |
| gnome | evolution | >= 0 < 2.0.3-1.2 | 2.0.3-1.2 |
| gnome | evolution | >= 0 < 2.0.3-1.2 | 2.0.3-1.2 |
| gnome | evolution | >= 0 < 2.0.3-1.2 | 2.0.3-1.2 |
| gnome | evolution | >= 0 < 2.0.3-1.2 | 2.0.3-1.2 |
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv9.8CRITICAL
vendor_debian9.8CRITICAL
vendor_redhat9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Evolution vulnerability
vendor_ubuntu·2005-01-24
CVE-2005-0102 Evolution vulnerability
Title: Evolution vulnerability
Summary: Evolution vulnerability
Max Vozeler discovered an integer overflow in camel-lock-helper. An
user-supplied length value was not validated, so that a value of -1
caused a buffer allocation of 0 bytes; this buffer was then filled by
an arbitrary amount of user-supplied data.
A local attacker or a malicious POP3 server could exploit this to
execute arbitrary code with root privileges (because camel-lock-helper
is installed as setuid root).
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
security flaw
vendor_redhat·2005-01-18·CVSS 9.8
CVE-2005-0102 [CRITICAL] security flaw
security flaw
Integer overflow in camel-lock-helper in Evolution 2.0.2 and earlier allows local users or remote malicious POP3 servers to execute arbitrary code via a length value of -1, which leads to a zero byte memory allocation and a buffer overflow.
Debian
CVE-2005-0102: evolution - Integer overflow in camel-lock-helper in Evolution 2.0.2 and earlier allows loca...
vendor_debian·2005·CVSS 9.8
CVE-2005-0102 [CRITICAL] CVE-2005-0102: evolution - Integer overflow in camel-lock-helper in Evolution 2.0.2 and earlier allows loca...
Integer overflow in camel-lock-helper in Evolution 2.0.2 and earlier allows local users or remote malicious POP3 servers to execute arbitrary code via a length value of -1, which leads to a zero byte memory allocation and a buffer overflow.
Scope: local
bookworm: resolved (fixed in 2.0.3-1.2)
bullseye: resolved (fixed in 2.0.3-1.2)
forky: resolved (fixed in 2.0.3-1.2)
sid: resolved (fixed in 2.0.3-1.2)
trixie: resolved (fixed in 2.0.3-1.2)
GHSA
GHSA-ghp8-rg92-746w: Integer overflow in camel-lock-helper in Evolution 2
ghsa_unreviewed·2022-05-01
CVE-2005-0102 [HIGH] CWE-190 GHSA-ghp8-rg92-746w: Integer overflow in camel-lock-helper in Evolution 2
Integer overflow in camel-lock-helper in Evolution 2.0.2 and earlier allows local users or remote malicious POP3 servers to execute arbitrary code via a length value of -1, which leads to a zero byte memory allocation and a buffer overflow.
OSV
CVE-2005-0102: Integer overflow in camel-lock-helper in Evolution 2
osv·2005-01-24·CVSS 9.8
CVE-2005-0102 [CRITICAL] CVE-2005-0102: Integer overflow in camel-lock-helper in Evolution 2
Integer overflow in camel-lock-helper in Evolution 2.0.2 and earlier allows local users or remote malicious POP3 servers to execute arbitrary code via a length value of -1, which leads to a zero byte memory allocation and a buffer overflow.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2005-0102 security flaw
bugzilla·2018-08-16·CVSS 9.8
CVE-2005-0102 [CRITICAL] CVE-2005-0102 security flaw
CVE-2005-0102 security flaw
Flaw bug created to hold information about an old flaw we knew something about. For more details see the MITRE CVE description.
Discussion:
MITRE description:
Integer overflow in camel-lock-helper in Evolution 2.0.2 and earlier allows local users or remote malicious POP3 servers to execute arbitrary code via a length value of -1, which leads to a zero byte memory allocation and a buffer overflow.
Bugzilla
CAN-2005-0102 evolution integer overflow
bugzilla·2005-02-10
[MEDIUM] CAN-2005-0102 evolution integer overflow
CAN-2005-0102 evolution integer overflow
Integer overflow in camel-lock-helper in Evolution 2.0.2 and earlier allows
local users or remote malicious POP3 servers to execute arbitrary code via a
length value of -1, which leads to a zero byte memory allocation and a buffer
overflow.
See:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2005-0102
http://marc.theaimsgroup.com/?l=bugtraq&m=110667319720599&w=2
http://www.mandrakesoft.com/security/advisories?name=MDKSA-2005:024
------- Bug moved to this database by [email protected] 2005-03-30 18:31 -------
This bug previously known as bug 2427 at https://bugzilla.fedora.us/
https://bugzilla.fedora.us/show_bug.cgi?id=2427
Originally filed under the Fedora Legacy product and Package request component.
Unknown priority P2. Setting to default pr
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000925http://secunia.com/advisories/13830http://security.gentoo.org/glsa/glsa-200501-35.xmlhttp://securitytracker.com/id?1012981http://www.debian.org/security/2005/dsa-673http://www.mandriva.com/security/advisories?name=MDKSA-2005:024http://www.redhat.com/support/errata/RHSA-2005-238.htmlhttp://www.redhat.com/support/errata/RHSA-2005-397.htmlhttp://www.securityfocus.com/bid/12354https://exchange.xforce.ibmcloud.com/vulnerabilities/19031https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9616https://usn.ubuntu.com/69-1/http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000925http://secunia.com/advisories/13830http://security.gentoo.org/glsa/glsa-200501-35.xmlhttp://securitytracker.com/id?1012981http://www.debian.org/security/2005/dsa-673http://www.mandriva.com/security/advisories?name=MDKSA-2005:024http://www.redhat.com/support/errata/RHSA-2005-238.htmlhttp://www.redhat.com/support/errata/RHSA-2005-397.htmlhttp://www.securityfocus.com/bid/12354https://exchange.xforce.ibmcloud.com/vulnerabilities/19031https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9616https://usn.ubuntu.com/69-1/
2005-01-24
Published