CVE Database
/

CVE-2006-0528

Back to search

CVE-2006-0528

Published: Feb 2, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

The cairo library (libcairo), as used in GNOME Evolution and possibly other products, allows remote attackers to cause a denial of service (persistent client crash) via an attached text file that contains "Content-Disposition: inline" in the header, and a very long line in the body, which causes the client to repeatedly crash until the e-mail message is manually removed, possibly due to a buffer overflow, as demonstrated using an XML attachment.

VendorProductVersions

n/a

n/a

affected
n/a

References

16408
vdb-entry
x_refsource_BID
USN-265-1
vendor-advisory
x_refsource_UBUNTU
SUSE-SR:2006:007
vendor-advisory
x_refsource_SUSE
610
third-party-advisory
x_refsource_SREASON
MDKSA-2006:057
vendor-advisory
x_refsource_MANDRIVA
19504
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now