cbcvebase.
CVE-2006-2789
published 2006-06-02

CVE-2006-2789: Evolution 2.2.x and 2.3.x in GNOME 2.7 and 2.8, when "load images if sender in addressbook" is enabled, allows remote attackers to cause a denial of service…

PriorityP410low2.6CVSS 2.0
AVNACHAuNCNINAP
EPSS
2.08%
79.4th percentile
Evolution 2.2.x and 2.3.x in GNOME 2.7 and 2.8, when "load images if sender in addressbook" is enabled, allows remote attackers to cause a denial of service (persistent crash) via a crafted "From" header that triggers an assert error in camel-internet-address.c when a null pointer is used.

Affected

13 ranges
VendorProductVersion rangeFixed in
debianevolution< evolution 2.4.0-1 (bookworm)evolution 2.4.0-1 (bookworm)
gnomeevolution
gnomeevolution
gnomeevolution
gnomeevolution
gnomeevolution
gnomeevolution
gnomeevolution
gnomeevolution
gnomeevolution>= 0 < 2.4.0-12.4.0-1
gnomeevolution>= 0 < 2.4.0-12.4.0-1
gnomeevolution>= 0 < 2.4.0-12.4.0-1
gnomeevolution>= 0 < 2.4.0-12.4.0-1

CVSS provenance

nvdv2.02.6LOWAV:N/AC:H/Au:N/C:N/I:N/A:P
osv2.6LOW
vendor_debian2.6LOW
vendor_redhat2.6LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.