Oval Definition:
oval:org.opensuse.security:def:20103304
Revision Date
:
2015-11-16
Version
:
1
Title
:
CVE-2010-3304
Description
:
The ACL plugin in Dovecot 1.2.x before 1.2.13 propagates INBOX ACLs to newly created mailboxes in certain configurations, which might allow remote attackers to read mailboxes that have unintended weak ACLs.
Family
:
unix
Class
:
vulnerability
Status
:
Reference(s)
:
CVE-2010-3304
Platform(s)
:
openSUSE 11.2
openSUSE 11.3
Product(s)
:
Definition Synopsis
Release Information
suse112 is installed
AND
dovecot12-backend-mysql less than 1.2.9-0.3.1
OR
dovecot12-backend-pgsql less than 1.2.9-0.3.1
OR
dovecot12-backend-sqlite less than 1.2.9-0.3.1
OR
dovecot12-devel less than 1.2.9-0.3.1
OR
dovecot12-fts-lucene less than 1.2.9-0.3.1
OR
dovecot12 less than 1.2.9-0.3.1
OR
Package Information
suse113 is installed
AND
dovecot12-backend-mysql less than 1.2.11-3.1.1
OR
dovecot12-backend-pgsql less than 1.2.11-3.1.1
OR
dovecot12-backend-sqlite less than 1.2.11-3.1.1
OR
dovecot12-devel less than 1.2.11-3.1.1
OR
dovecot12-fts-lucene less than 1.2.11-3.1.1
OR
dovecot12-fts-solr less than 1.2.11-3.1.1
OR
dovecot12 less than 1.2.11-3.1.1
BACK