GNOME Evolution 2.22.2 - 'html_engine_get_view_width()' Denial of Service



EKU-ID: 36916 CVE: OSVDB-ID:
Author: Juan Pablo Lopez Yacubian Published: 2008-06-26 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/29961/info

GNOME Evolution is prone to a denial-of-service vulnerability when handling email messages that contain specially crafted HTML.

Successful attacks will crash the application.

Evolution 2.22.2 is vulnerable; other versions may also be affected.

<IFRAME SRC="A"></IFRAME> <FRAMESET><FRAME SRC="A"></FRAMESET>