Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
dovecot 1.0.7 in Red Hat Enterprise Linux (RHEL) 5, and possibly Fedora, uses world-readable permissions for dovecot.conf, which allows local users to obtain the ssl_key_password parameter value.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Red Hat Enterprise Linux dovecot 'dovecot.conf' 权限许可和访问控制问题漏洞
Vulnerability Description
Dovecot是一款开源的基于类Linux/UNIX系统的IMAP和POP3邮件服务器。 Red Hat Enterprise Linux (RHEL) 5版本可能以及Fedora中的dovecot 1.0.7版本的dovecot.conf文件使用可普遍读取的许可,这使得本地用户可以获得ssl_key_password参数值。
CVSS Information
N/A
Vulnerability Type
N/A