vendor:
Evolution
by:
Unknown
N/A
CVSS
N/A
Arbitrary Content Injection
Unknown
CWE
Product Name: Evolution
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: Unknown
Related CWE: Unknown
CPE: Unknown
Platforms Tested: Unknown
Unknown
Arbitrary Content Injection in Evolution
An attacker can exploit a weakness in Evolution to add arbitrary content into a GnuPG signed and/or encrypted message. This vulnerability is due to the weakness discussed in BID 22757 (GnuPG Signed Message Arbitrary Content Injection Weakness) and has been assigned its own BID because of the specific way that Evolution uses GnuPG.
Mitigation:
Unknown