Back to search
CVE-2005-3088
Published: Oct 27, 2005
Modified: Aug 7, 2024
PUBLISHED
Description
fetchmailconf before 1.49 in fetchmail 6.2.0, 6.2.5 and 6.2.5.2 creates configuration files with insecure world-readable permissions, which allows local users to obtain sensitive information such as passwords.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
ADV-2005-2182
vdb-entry
x_refsource_VUPEN
APPLE-SA-2006-08-01
vendor-advisory
x_refsource_APPLE
20267
vdb-entry
x_refsource_OSVDB
17293
third-party-advisory
x_refsource_SECUNIA
17349
third-party-advisory
x_refsource_SECUNIA
17446
third-party-advisory
x_refsource_SECUNIA
ADV-2006-3101
vdb-entry
x_refsource_VUPEN
1015114
vdb-entry
x_refsource_SECTRACK
21253
third-party-advisory
x_refsource_SECUNIA
SSA:2006-045-01
vendor-advisory
x_refsource_SLACKWARE
19289
vdb-entry
x_refsource_BID
TA06-214A
third-party-advisory
x_refsource_CERT
20051027 fetchmail security announcement 2005-02 (CVE-2005-3088)
mailing-list
x_refsource_BUGTRAQ
http://fetchmail.berlios.de/fetchmail-SA-2005-02.txt
x_refsource_CONFIRM
DSA-900
vendor-advisory
x_refsource_DEBIAN
15179
vdb-entry
x_refsource_BID
RHSA-2005:823
vendor-advisory
x_refsource_REDHAT
17495
third-party-advisory
x_refsource_SECUNIA
USN-215-1
vendor-advisory
x_refsource_UBUNTU
MDKSA-2005:209
vendor-advisory
x_refsource_MANDRIVA
17491
third-party-advisory
x_refsource_SECUNIA
18895
third-party-advisory
x_refsource_SECUNIA
GLSA-200511-06
vendor-advisory
x_refsource_GENTOO
17631
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now