Synopsis: Moderate: evolution-data-server security update
Issue date: 2007-05-30
CVE Names: CVE-2007-1558
A flaw was found in the way evolution-data-server processed certain APOP
authentication requests. By sending certain responses when
evolution-data-server attempted to authenticate against an APOP server,
a remote attacker could potentially acquire certain portions of a user's
authentication credentials. (CVE-2007-1558)
SL 5.x
SRPMS:
evolution-data-server-1.8.0-15.0.3.el5.src.rpm
i386:
evolution-data-server-1.8.0-15.0.3.el5.i386.rpm
evolution-data-server-devel-1.8.0-15.0.3.el5.i386.rpm
x86_64:
evolution-data-server-1.8.0-15.0.3.el5.i386.rpm
evolution-data-server-1.8.0-15.0.3.el5.x86_64.rpm
evolution-data-server-devel-1.8.0-15.0.3.el5.i386.rpm
evolution-data-server-devel-1.8.0-15.0.3.el5.x86_64.rpm
-Connie Sieh
-Troy Dawson
|