|
|
Security Check Details
SuSE Security Update: evolution-data-server (2010-02-08) Synopsis :
The remote SuSE system is missing a security patch for evolution-data-server
Description :
This update fixes following vulnerability:
evolution considered S/MIME signatures to be valid even for modified mails (CVE-2009-0547: CVSS v2 Base Score: 5.0).
Additionally the following bug has been fixed:
A POP3 server sending overly long lines could crash evolution.
See also :
https://bugzilla.novell.com/show_bug.cgi?id=475108
https://bugzilla.novell.com/show_bug.cgi?id=568822
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0547
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0587
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1631
Solution :
Run yast to install the security patch for evolution-data-server
Risk factor :
Medium / CVSS Base Score : 5.0
(CVSS2#AV:N/AC:L/Au:N/C:N/I:P/A:N)
More at Nessus.org
|
|
|