4.4
CVSSv2

CVE-2010-2023

Published: 07/06/2010 Updated: 10/10/2018
CVSS v2 Base Score: 4.4 | Impact Score: 6.4 | Exploitability Score: 3.4
VMScore: 392
Vector: AV:L/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

transports/appendfile.c in Exim prior to 4.72, when a world-writable sticky-bit mail directory is used, does not verify the st_nlink field of mailbox files, which allows local users to cause a denial of service or possibly gain privileges by creating a hard link to another user's file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

exim exim 4.10

exim exim 4.20

exim exim 4.68

exim exim 4.67

exim exim 4.60

exim exim 4.54

exim exim 4.34

exim exim 4.41

exim exim 4.42

exim exim

exim exim 4.64

exim exim 4.63

exim exim 4.51

exim exim 4.70

exim exim 4.69

exim exim 4.62

exim exim 4.61

exim exim 4.44

exim exim 4.43

exim exim 4.21

exim exim 4.33

exim exim 4.50

exim exim 4.23

exim exim 4.22

exim exim 4.32

exim exim 4.40

exim exim 4.66

exim exim 4.65

exim exim 4.53

exim exim 4.52

exim exim 4.31

exim exim 4.30

exim exim 4.24

Vendor Advisories

It was discovered that Exim contained a design flaw in the way it processed alternate configuration files An attacker that obtained privileges of the “Debian-exim” user could use an alternate configuration file to obtain root privileges (CVE-2010-4345) ...