2.1
CVSSv2

CVE-2005-1152

Published: 25/05/2005 Updated: 05/09/2008
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

popauth.c in qpopper 4.0.5 and previous versions does not properly set the umask, which may cause qpopper to create files with group or world-writable permissions.

Vulnerable Product Search on Vulmon Subscribe to Product

debian qpopper

debian qpopper 4.0.5

Vendor Advisories

This advisory does only cover updated packages for Debian 30 alias woody For reference below is the original advisory text: Two bugs have been discovered in qpopper, an enhanced Post Office Protocol (POP3) server The Common Vulnerabilities and Exposures project identifies the following problems: CAN-2005-1151 Jens Steube discovered that wh ...