|
|
| |
|
| |
dovecot: negative rights in ACL plugin
| Package(s): | dovecot |
CVE #(s): | CVE-2008-4577
|
| Created: | October 30, 2008 |
Updated: | September 28, 2009 |
| Description: |
dovecot has a restriction bypass vulnerability. From the
vulnerability database entry:
The ACL plugin in Dovecot before 1.1.4 treats negative access rights as if they are positive access rights, which allows attackers to bypass intended access restrictions. |
| Alerts: |
|
( Log in to post comments)
|
|
|