VDB
DEBIAN-CVE-2017-10140
DEBIAN-CVE-2017-10140
PUBLISHED
CVSS 7.800000190734863 HIGH
Postfix before 2.11.10, 3.0.x before 3.0.10, 3.1.x before 3.1.6, and 3.2.x before 3.2.2 might allow local users to gain privileges by leveraging undocumented functionality in Berkeley DB 2.x and later, related to reading settings from DB_CONFIG in the current directory.
Risk Scores
CVSS v3.0
7.800000190734863
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Debian:14 | db5.3 | 0, 0, 0 |
| Debian:13 | db5.3 | 0, 0, 0 |
| Debian:12 | db5.3 | 0, 0, 0 |
| Debian:11 | db5.3 | 0, 0, 0 |
Timeline
- Apr 16, 2018 CVE Published
- Apr 28, 2026 CVE Updated