CVE-2008-4870

dovecot 1.0.7 in Red Hat Enterprise Linux (RHEL) 5, and possibly Fedora, uses world-readable permissions for dovecot.conf, which allows local users to obtain the ssl_key_password parameter value.
Configurations

Configuration 1


Information

Published : 2008-11-01 12:00

Updated : 2022-02-03 07:58


NVD link : CVE-2008-4870

Mitre link : CVE-2008-4870

Products Affected
No products.
CWE