In GNOME evolution-data-server before 3.35.91, a malicious server can crash the mail client with a NULL pointer dereference by sending an invalid (e.g., minimal) CAPABILITY line on a connection attempt. This is related to imapxfreecapability and imapxconnectto_server.
{ "binaries": [ { "binary_name": "evolution-data-server", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "evolution-data-server-common", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "evolution-data-server-dev", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "evolution-data-server-online-accounts", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "gir1.2-ebook-1.2", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "gir1.2-ebookcontacts-1.2", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "gir1.2-edataserver-1.2", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "libcamel-1.2-54", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "libcamel1.2-dev", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "libebackend-1.2-10", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "libebackend1.2-dev", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "libebook-1.2-16", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "libebook-contacts-1.2-2", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "libebook-contacts1.2-dev", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "libebook1.2-dev", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "libecal-1.2-19", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "libecal1.2-dev", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "libedata-book-1.2-25", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "libedata-book1.2-dev", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "libedata-cal-1.2-28", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "libedata-cal1.2-dev", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "libedataserver-1.2-21", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "libedataserver1.2-dev", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "libedataserverui-1.2-1", "binary_version": "3.18.5-1ubuntu1.3" }, { "binary_name": "libedataserverui1.2-dev", "binary_version": "3.18.5-1ubuntu1.3" } ] }
{ "binaries": [ { "binary_name": "evolution-data-server", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "evolution-data-server-common", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "evolution-data-server-dev", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "evolution-data-server-online-accounts", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "evolution-data-server-tests", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "gir1.2-camel-1.2", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "gir1.2-ebook-1.2", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "gir1.2-ebookcontacts-1.2", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "gir1.2-edataserver-1.2", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "gir1.2-edataserverui-1.2", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "libcamel-1.2-61", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "libcamel1.2-dev", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "libebackend-1.2-10", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "libebackend1.2-dev", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "libebook-1.2-19", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "libebook-contacts-1.2-2", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "libebook-contacts1.2-dev", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "libebook1.2-dev", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "libecal-1.2-19", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "libecal1.2-dev", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "libedata-book-1.2-25", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "libedata-book1.2-dev", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "libedata-cal-1.2-28", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "libedata-cal1.2-dev", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "libedataserver-1.2-23", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "libedataserver1.2-dev", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "libedataserverui-1.2-2", "binary_version": "3.28.5-0ubuntu0.18.04.3" }, { "binary_name": "libedataserverui1.2-dev", "binary_version": "3.28.5-0ubuntu0.18.04.3" } ] }