Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Gentoo Linux Security Advisory GLSA 200408-19
https://security.gentoo.org/
Severity: High
Title: courier-imap: Remote Format String Vulnerability
Date: August 19, 2004
Bugs: #60865
ID: 200408-19
Synopsis
=======
There is a format string vulnerability in non-standard configurations
of courier-imapd which may be exploited remotely. An attacker may be
able to execute arbitrary code as the user running courier-imapd
(oftentimes root).
Background
=========
Courier-IMAP is an IMAP server which is part of the Courier mail
system. It provides access only to maildirs.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 net-mail/courier-imap <= 3.0.2-r1 >= 3.0.5
=======...
style>.gentoo_availability{display:block;}
Get the latest Linux and open source security news straight to your inbox.