Scientific Linux Security Update : evolution on SL4.x, SL3.x i386/x86_64
Low Nessus Plugin ID 60182
SynopsisThe remote Scientific Linux host is missing one or more security updates.
DescriptionA flaw was found in the way Evolution processed certain APOP authentication requests. A remote attacker could potentially acquire certain portions of a user's authentication credentials by sending certain responses when evolution-data-server attempted to authenticate against an APOP server. (CVE-2007-1558)
SolutionUpdate the affected evolution and / or evolution-devel packages.