Title : Debian Security Update Fixes Evolution-data-server Code Execution Vulnerability VUPEN ID : VUPEN/ADV-2007-2303 CVE ID : CVE-2007-3257
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-06-25
Technical Description
A vulnerability has been identified in Debian, which could be exploited by attackers to execute arbitrary code. This issue is caused by an error in evolution-data-server. For additional information, see : VUPEN/ADV-2007-2282
Debian GNU/Linux sarge - A fix will be available soon
Debian GNU/Linux etch - Upgrade to evolution-data-server version 1.6.3-5etch1
Debian GNU/Linux sid - Upgrade to evolution-data-server version 1.10.2-2 References