CVE-2005-2550
EPSS 4.4%
Description
Format string vulnerability in Evolution 1.4 through 2.3.6.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the calendar entries such as task lists, which are not properly handled when the user selects the Calendars tab.
How to fix CVE-2005-2550
To remediate CVE-2005-2550, upgrade the affected package to a fixed version below.
- Debian/evolution—upgrade to 2.2.3-3 or later
Is CVE-2005-2550 being exploited?
Low — EPSS is 4.4%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 2.2.3-3