Description
Camel (camel-imap-folder.c) in the mailer component for Evolution Data Server 1.11 allows remote IMAP servers to execute arbitrary code via a negative SEQUENCE value in GData, which is used as an array index.
CVSS vector
AV:N/AC:M/C:P/I:P/A:PExploitability: 8.6 | Impact: 6.4 Affected Packages3 packages
🔴Vulnerability Details
3GHSAGHSA-6ggg-vv7h-7mm5: Camel (camel-imap-folder↗2022-05-03 ▶ CVEListCVE-2007-3257: Camel (camel-imap-folder↗2007-06-19 ▶ OSVCVE-2007-3257: Camel (camel-imap-folder↗2007-06-19 ▶ 📋Vendor Advisories
3Ubuntuevolution-data-server vulnerability↗2007-06-21 ▶ Red Hatevolution malicious server arbitrary code execution↗2007-06-14 ▶ DebianCVE-2007-3257: evolution - Camel (camel-imap-folder.c) in the mailer component for Evolution Data Server 1....↗2007 ▶ 💬Community
4BugzillaCVE-2007-3257 evolution malicious server arbitrary code execution↗2007-06-14 ▶ BugzillaCVE-2007-3257 Evolution malicious server arbitrary code execution [FC5]↗2007-06-14 ▶ BugzillaCVE-2007-3257 Evolution malicious server arbitrary code execution [F7]↗2007-06-14 ▶ BugzillaCVE-2007-3257 Evolution malicious server arbitrary code execution [FC6]↗2007-06-14 ▶