CVE-2010-4011

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
17/11/2010
Last modified:
17/11/2010

Description

Dovecot in Apple Mac OS X 10.6.5 10H574 does not properly manage memory for user names, which allows remote authenticated users to read the private e-mail of other persons in opportunistic circumstances via standard e-mail clients accessing a user's own mailbox, related to a "memory aliasing issue."

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:apple:mac_os_x_server:10.6.5:10h574:*:*:*:*:*:*