PT-2019-15999 · Kopano+2 · Kopano Groupware Core+2

CVE-2019-19907

·

Published

2019-12-19

·

Updated

2024-07-04

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Kopano Groupware Core versions prior to 8.7.7
Description The issue is related to out-of-bounds access in the HrAddFBBlock function, specifically during the parsing of ICal data. This occurs due to the mishandling of an array copy in the libfreebusy/freebusyutil.cpp component.
Recommendations For versions prior to 8.7.7, update to version 8.7.7 or later to resolve the issue.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-19907
DLA-3354-1
USN-6876-1

Affected Products

Kopano Groupware Core
Linuxmint
Ubuntu