← Back

CVE-2011-3201

nvd nist
Published: Mar 8, 2013Modified: Apr 29, 2026

JSON object

Loading...
4.3
Vector
AV:N/AC:M/Au:N/C:P/I:N/A:N
Exploitability: 8.6 / Impact: 2.9
Source: NVD

Description

GNOME Evolution before 3.2.3 allows user-assisted remote attackers to read arbitrary files via the attachment parameter to a mailto: URL, which attaches the file to the email.

Affected (49)

1 product
Solaris
1 product
Evolution
3 products
Enterprise Linux Desktop
Enterprise Linux Server
Enterprise Linux Workstation
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 11.2
Configuration B
45 vulnerable
Vulnerable SoftwareAffected Versions
Gnome
Up to 3.0.3
Version 1.0.8
Version 1.11
Version 1.2.1
Version 1.2.2
Version 1.2.3
Version 1.2.4
Version 1.2
Version 1.4.3
Version 1.4.4
Version 1.4.5
Version 1.4.6
Version 1.4
Version 1.5
Version 2.0.0
Version 2.0.1
Version 2.0.2
Version 2.0
Version 2.10.3
Version 2.12.3
Version 2.12
Version 2.1
Version 2.2.1
Version 2.22.1
Version 2.22.3
Version 2.24.5
Version 2.24
Version 2.26.1
Version 2.26.3
Version 2.28.3.1
Version 2.2
Version 2.3.1
Version 2.3.2
Version 2.3.3
Version 2.3.4
Version 2.3.5
Version 2.3.6.1
Version 2.3.6
Version 2.3.7
Version 2.30.3
Version 2.32.3
Version 2.4.2.1
Version 2.4
Version 2.6
Version 2.8.1
Configuration C
3 vulnerable
Vulnerable SoftwareAffected Versions
Version 6.0
Version 6.0
Version 6.0

References (14)

Source: secalert@redhat.com
Third Party Advisory
Source: secalert@redhat.com
Issue Tracking
Source: secalert@redhat.com
Issue TrackingPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue Tracking
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.