VDB
CVE-2008-4577
CVE-2008-4577
PUBLISHED
Reported by redhat · Published October 15, 2008
The ACL plugin in Dovecot before 1.1.4 treats negative access rights as if they are positive access rights, which allows attackers to bypass intended access restrictions.
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| n/a | n/a | n/a, n/a, n/a |
Timeline
- Oct 15, 2008 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 21, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Dec 19, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 26, 2023 EPSS Score
- Jul 18, 2023 EPSS Score
References
- 32164 third-party-advisoryx_refsource_SECUNIA
- 32471 third-party-advisoryx_refsource_SECUNIA
- 33149 third-party-advisoryx_refsource_SECUNIA
- ADV-2008-2745 vdb-entryx_refsource_VUPEN
- FEDORA-2008-9202 vendor-advisoryx_refsource_FEDORA
- oval:org.mitre.oval:def:10376 vdb-entrysignaturex_refsource_OVAL
- 31587 vdb-entryx_refsource_BID
- FEDORA-2008-9232 vendor-advisoryx_refsource_FEDORA
- MDVSA-2008:232 vendor-advisoryx_refsource_MANDRIVA
- USN-838-1 vendor-advisoryx_refsource_UBUNTU
- SUSE-SR:2009:004 vendor-advisoryx_refsource_SUSE
- GLSA-200812-16 vendor-advisoryx_refsource_GENTOO
- x_refsource_CONFIRM
- RHSA-2009:0205 vendor-advisoryx_refsource_REDHAT
- 33624 third-party-advisoryx_refsource_SECUNIA
- [Dovecot-news] 20081005 v1.1.4 released mailing-listx_refsource_MLIST
- 36904 third-party-advisoryx_refsource_SECUNIA