Описание
The ACL plugin in Dovecot before 1.1.4 treats negative access rights as if they are positive access rights, which allows attackers to bypass intended access restrictions.
Релиз | Статус | Примечание |
---|---|---|
dapper | not-affected | code not present |
devel | not-affected | |
gutsy | ignored | end of life, was needed |
hardy | released | 1:1.0.10-1ubuntu5.2 |
intrepid | not-affected | |
jaunty | not-affected | |
upstream | released | 1.1.4 |
Показывать по
EPSS
6.4 Medium
CVSS2
7.5 High
CVSS3
Связанные уязвимости
The ACL plugin in Dovecot before 1.1.4 treats negative access rights as if they are positive access rights, which allows attackers to bypass intended access restrictions.
The ACL plugin in Dovecot before 1.1.4 treats negative access rights as if they are positive access rights, which allows attackers to bypass intended access restrictions.
The ACL plugin in Dovecot before 1.1.4 treats negative access rights a ...
The ACL plugin in Dovecot before 1.1.4 treats negative access rights as if they are positive access rights, which allows attackers to bypass intended access restrictions.
ELSA-2009-0205: dovecot security and bug fix update (LOW)
EPSS
6.4 Medium
CVSS2
7.5 High
CVSS3