Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2010-4011

Опубликовано: 17 нояб. 2010
Источник: nvd
CVSS2: 4
EPSS Низкий

Описание

Dovecot in Apple Mac OS X 10.6.5 10H574 does not properly manage memory for user names, which allows remote authenticated users to read the private e-mail of other persons in opportunistic circumstances via standard e-mail clients accessing a user's own mailbox, related to a "memory aliasing issue."

Комментарий

Per: http://lists.apple.com/archives/security-announce/2010//Nov/msg00001.html

'Dovecot is only provided with Mac OS X Server systems. This issue only affects systems running Mac OS X Server v10.6.5 (10H574). This issue does not affect the Dovecot open source project.'

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:apple:mac_os_x_server:10.6.5:10h574:*:*:*:*:*:*

EPSS

Процентиль: 36%
0.00153
Низкий

4 Medium

CVSS2

Дефекты

CWE-200

Связанные уязвимости

ubuntu
около 15 лет назад

Dovecot in Apple Mac OS X 10.6.5 10H574 does not properly manage memory for user names, which allows remote authenticated users to read the private e-mail of other persons in opportunistic circumstances via standard e-mail clients accessing a user's own mailbox, related to a "memory aliasing issue."

debian
около 15 лет назад

Dovecot in Apple Mac OS X 10.6.5 10H574 does not properly manage memor ...

github
больше 3 лет назад

Dovecot in Apple Mac OS X 10.6.5 10H574 does not properly manage memory for user names, which allows remote authenticated users to read the private e-mail of other persons in opportunistic circumstances via standard e-mail clients accessing a user's own mailbox, related to a "memory aliasing issue."

EPSS

Процентиль: 36%
0.00153
Низкий

4 Medium

CVSS2

Дефекты

CWE-200