Integer overflow in camel-lock-helper in Evolution 2.0.2 and earlier allows local users or remote malicious POP3 servers to execute arbitrary code via a length value of -1, which leads to a zero byte memory allocation and a buffer overflow.
Score: 1.8
Priority: P4 - Informational (Low)
Score: 0.00599Percentile: 0.68426
CVSS v3.1 Score: 9.8
Severity: CRITICAL
← Back to Home