Lucene search

K
nvd[email protected]NVD:CVE-2008-1108
HistoryJun 04, 2008 - 8:32 p.m.

CVE-2008-1108

2008-06-0420:32:00
CWE-119
web.nvd.nist.gov
4

CVSS2

7.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:H/Au:N/C:C/I:C/A:C

AI Score

7.6

Confidence

Low

EPSS

0.102

Percentile

95.0%

Buffer overflow in Evolution 2.22.1, when the ITip Formatter plugin is disabled, allows remote attackers to execute arbitrary code via a long timezone string in an iCalendar attachment.

Affected configurations

Nvd
Node
gnomeevolutionMatch2.2.1
VendorProductVersionCPE
gnomeevolution2.2.1cpe:2.3:a:gnome:evolution:2.2.1:*:*:*:*:*:*:*

References

CVSS2

7.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:H/Au:N/C:C/I:C/A:C

AI Score

7.6

Confidence

Low

EPSS

0.102

Percentile

95.0%