Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In Dovecot before 2.2.36.3 and 2.3.x before 2.3.5.1, a local attacker can cause a buffer overflow in the indexer-worker process, which can be used to elevate to root. This occurs because of missing checks in the fts and pop3-uidl components.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Dovecot 缓冲区错误漏洞
Vulnerability Description
Dovecot是一款开源的基于类Linux/UNIX系统的IMAP和POP3邮件服务器。 Dovecot 2.2.36.3之前版本和2.3.5.1之前的2.3.x版本中的indexer-worker进程存在安全漏洞。本地攻击者可利用该漏洞将用户权限提升至root。
CVSS Information
N/A
Vulnerability Type
N/A