CVE Vulnerabilities

CVE-2002-1311

Published: Nov 29, 2002 | Modified: Oct 18, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Courier sqwebmail before 0.40.0 does not quickly drop privileges after startup in certain cases, which could allow local users to read arbitrary files.

Affected Software

Name Vendor Start Version End Version
Courier_mta Double_precision_incorporated 0.37.3 (including) 0.37.3 (including)
Courier_mta Double_precision_incorporated 0.40 (including) 0.40 (including)

References