transports/appendfile.c in Exim before 4.72, when a world-writable sticky-bit mail directory is used, does not verify the st_nlink field of mailbox files, which allows local users to cause a denial of service or possibly gain privileges by creating a hard link to another user's file.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2010-06-07T14:00:00

Updated: 2024-08-07T02:17:13.771Z

Reserved: 2010-05-24T00:00:00

Link: CVE-2010-2023

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2010-06-07T17:12:48.247

Modified: 2024-11-21T01:15:43.950

Link: CVE-2010-2023

cve-icon Redhat

Severity : Moderate

Publid Date: 2010-06-03T00:00:00Z

Links: CVE-2010-2023 - Bugzilla