RSS   Vulnerabilities for 'Deliver'   RSS

2010-03-26
 
CVE-2010-1123

CWE-362
 

 
Chip Salzenberg Deliver does not properly associate a lockfile with the user who created the file, which allows local users to cause a denial of service (blockage of incoming e-mail) by creating lockfiles for arbitrary mailboxes.

 
 
CVE-2010-0439

CWE-59
 

 
Chip Salzenberg Deliver allows local users to cause a denial of service, obtain sensitive information, and possibly change the ownership of arbitrary files via a symlink attack on an unspecified file.

 


Copyright 2024, cxsecurity.com

 

Back to Top