Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

Ubuntu: Postfix vulnerability

BugsAlert Home > Ubuntu: Postfix vulnerability
 
 

LinuxSecurity.com: Sebastian Krahmer discovered that Postfix was not correctly handling mailbox ownership when dealing with Linux's implementation of hardlinking to symlinks. In certain mail spool configurations, a local attacker could exploit this to append data to arbitrary files as the root user. The default Ubuntu configuration was not vulnerable.




Original Source: http://www.linuxsecurity.com/content/view/141175?rdf

Learn more about Ubuntu: Postfix vulnerability
 
Tags: ubuntu postfix vulnerability

Related Items

      Bugtraq: AST-2008-008: Remote Crash Vulnerability in SIP channel driver when run in pedantic mode

      CVE-2008-1441 (windows-nt)

      Microsoft Security Bulletin Summary for July 2007

      Joomla Component Xe webtv (id) Blind SQL Injection Exploit

      FrSIRT - cyan soft Products Format String and Denial of Service Vulnerabilities

      W32/Bagle

      CVE-2008-1995 (Java System Directory Server)

 

Pixel