.:[ packet storm ]:.
                           
honesty is the best policy
honesty is the best policy

 ///  File Name:MDVSA-2008-232.txt
Description:
Mandriva Linux Security Advisory 2008-232 - The ACL plugin in dovecot prior to version 1.1.4 treated negative access rights as though they were positive access rights, which allowed attackers to bypass intended access restrictions. The ACL plugin in dovecot prior to version 1.1.6 allowed attackers to bypass intended access restrictions by using the 'k' right to create unauthorized 'parent/child/child' mailboxes.
Homepage:http://www.mandriva.com/security/
File Size:4496
Related CVE(s):CVE-2008-4577, CVE-2008-4578
Last Modified:Nov 19 18:47:25 2008
MD5 Checksum:74d6e20e2de494366564f42bf606f8cb

 .:. Back