CVE Vulnerabilities

CVE-2004-0880

Published: Jan 27, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
1.2 LOW
AV:L/AC:H/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

getmail 4.x before 4.2.0, when run as root, allows local users to overwrite arbitrary files via a symlink attack on an mbox file.

Affected Software

NameVendorStart VersionEnd Version
GetmailGetmail2.3.7 (including)2.3.7 (including)
GetmailGetmail3.x (including)3.x (including)
GetmailGetmail4.0 (including)4.0 (including)
GetmailGetmail4.0.0_b10 (including)4.0.0_b10 (including)
GetmailGetmail4.0.1 (including)4.0.1 (including)
GetmailGetmail4.0.2 (including)4.0.2 (including)
GetmailGetmail4.0.3 (including)4.0.3 (including)
GetmailGetmail4.0.4 (including)4.0.4 (including)
GetmailGetmail4.0.5 (including)4.0.5 (including)
GetmailGetmail4.0.6 (including)4.0.6 (including)
GetmailGetmail4.0.7 (including)4.0.7 (including)
GetmailGetmail4.0.8 (including)4.0.8 (including)
GetmailGetmail4.0.9 (including)4.0.9 (including)
GetmailGetmail4.0.10 (including)4.0.10 (including)
GetmailGetmail4.0.11 (including)4.0.11 (including)
GetmailGetmail4.0.12 (including)4.0.12 (including)
GetmailGetmail4.0.13 (including)4.0.13 (including)
GetmailGetmail4.1 (including)4.1 (including)
GetmailGetmail4.1.1 (including)4.1.1 (including)
GetmailGetmail4.1.2 (including)4.1.2 (including)
GetmailGetmail4.1.3 (including)4.1.3 (including)
GetmailGetmail4.1.4 (including)4.1.4 (including)
GetmailGetmail4.1.5 (including)4.1.5 (including)

References