CVE Vulnerabilities

CVE-2005-1151

Published: May 25, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

qpopper 4.0.5 and earlier does not properly drop privileges before processing certain user-supplied files, which allows local users to overwrite or create arbitrary files as root.

Affected Software

NameVendorStart VersionEnd Version
QpopperDebian*4.0.4 (including)
QpopperDebian4.0.5 (including)4.0.5 (including)
QpopperUbuntudapper*
QpopperUbuntudevel*
QpopperUbuntuedgy*
QpopperUbuntufeisty*

References