transports/appendfile.c in Exim before 4.72, when MBX locking is enabled, allows local users to change permissions of arbitrary files or create arbitrary files, and cause a denial of service or possibly gain privileges, via a symlink attack on a lockfile in /tmp/.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2010-06-07T14:00:00

Updated: 2024-08-07T02:17:14.464Z

Reserved: 2010-05-24T00:00:00

Link: CVE-2010-2024

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2010-06-07T17:12:48.280

Modified: 2018-10-10T19:58:15.563

Link: CVE-2010-2024

cve-icon Redhat

Severity :

Publid Date: 2010-06-03T00:00:00Z

Links: CVE-2010-2024 - Bugzilla