Dovecot Insecure 'base_dir' Permissions Local Privilege Escalation Vulnerability

Bugtraq ID: 37084
Class: Design Error
CVE: CVE-2009-3897
Remote: No
Local: Yes
Published: Nov 20 2009 12:00AM
Updated: Oct 11 2011 09:10AM
Credit: Dovecot
Vulnerable: S.u.S.E. openSUSE 11.2
Mandriva Linux Mandrake 2010.0 x86_64
Mandriva Linux Mandrake 2010.0
Gentoo Linux
Dovecot Dovecot 1.2.7
Dovecot Dovecot 1.2
Not Vulnerable: Dovecot Dovecot 1.2.8


 

Privacy Statement
Copyright 2010, SecurityFocus