Affects FC5, FC6 +++ This bug was initially created as a clone of Bug #231478 +++ Ulf Harnhammar, Secunia Research, discovered a format string flaw in the way evolution displays a memo's categories. It is possible for an attacker to send a specially crafted memo mail which could execute arbitrary code as the user running evoluiton. This memo must be accepted form the email, then later viewed by the victim. The attack requires a fair amount of user interaction to be successful. -- Additional comment from bressers on 2007-03-22 09:38 EST -- This flaw is now public: http://marc.info/?l=bugtraq&m=117449439201881&w=2
Fixed in evolution-2.6.3-2.fc5 and evolution-2.8.3-2.fc6.