Vulnerabilities > CVE-2011-3350 - Improper Check for Dropped Privileges vulnerability in Marmaro Masqmail 0.2.21/0.2.30
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
masqmail 0.2.21 through 0.2.30 improperly calls seteuid() in src/log.c and src/masqmail.c that results in improper privilege dropping.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
Common Weakness Enumeration (CWE)
References
- https://access.redhat.com/security/cve/cve-2011-3350
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=638002
- https://security-tracker.debian.org/tracker/CVE-2011-3350
- https://access.redhat.com/security/cve/cve-2011-3350
- https://security-tracker.debian.org/tracker/CVE-2011-3350
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=638002