Unrated severityNVD Advisory· Published Mar 14, 2009· Updated Apr 23, 2026
CVE-2009-0587
CVE-2009-0587
Description
Multiple integer overflows in Evolution Data Server (aka evolution-data-server) before 2.24.5 allow context-dependent attackers to execute arbitrary code via a long string that is converted to a base64 representation in (1) addressbook/libebook/e-vcard.c in evc or (2) camel/camel-mime-utils.c in libcamel.
Affected products
1- cpe:2.3:a:go-evolution:evolution-data-server:*:*:*:*:*:*:*:*Range: <=2.24.4
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
21- ocert.org/patches/2008-015/camel-CVE-2009-0587.diffnvdPatch
- ocert.org/patches/2008-015/evc-CVE-2009-0587.diffnvdPatch
- openwall.com/lists/oss-security/2009/03/12/2nvdPatch
- www.securityfocus.com/bid/34100nvdPatch
- lists.opensuse.org/opensuse-security-announce/2010-05/msg00002.htmlnvd
- osvdb.org/52702nvd
- osvdb.org/52703nvd
- secunia.com/advisories/34338nvd
- secunia.com/advisories/34339nvd
- secunia.com/advisories/34348nvd
- secunia.com/advisories/34351nvd
- secunia.com/advisories/35357nvd
- www.debian.org/security/2009/dsa-1813nvd
- www.mandriva.com/security/advisoriesnvd
- www.ocert.org/advisories/ocert-2008-015.htmlnvd
- www.redhat.com/support/errata/RHSA-2009-0354.htmlnvd
- www.redhat.com/support/errata/RHSA-2009-0355.htmlnvd
- www.redhat.com/support/errata/RHSA-2009-0358.htmlnvd
- www.securityfocus.com/archive/1/501712/100/0/threadednvd
- www.ubuntu.com/usn/USN-733-1nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11385nvd
News mentions
0No linked articles in our index yet.