TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2008-3889

N/A

Beschreibung

Postfix 2.4 before 2.4.9, 2.5 before 2.5.5, and 2.6 before 2.6-20080902, when used with the Linux 2.6 kernel, leaks epoll file descriptors during execution of "non-Postfix" commands, which allows local users to cause a denial of service (application slowdown or exit) via a crafted command, as demonstrated by a command in a .forward file.

CVE Details

CVSS v3.1 BewertungN/A
Veroffentlicht9/12/2008
Zuletzt geandert4/23/2026
Quellenvd
Honeypot-Sichtungen0

Betroffene Produkte

linux:linux_kernelpostfix:postfix

Schwachen (CWE)

CWE-20

Referenzen

http://secunia.com/advisories/31716(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/31800(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/31982(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/31986(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/32231(af854a3a-2127-422b-91ae-364da2661108)
http://security.gentoo.org/glsa/glsa-200809-09.xml(af854a3a-2127-422b-91ae-364da2661108)
http://securityreason.com/securityalert/4239(af854a3a-2127-422b-91ae-364da2661108)
http://securitytracker.com/id?1020800(af854a3a-2127-422b-91ae-364da2661108)
http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0311(af854a3a-2127-422b-91ae-364da2661108)
http://www.postfix.org/announcements/20080902.html(af854a3a-2127-422b-91ae-364da2661108)
http://www.securityfocus.com/bid/30977(af854a3a-2127-422b-91ae-364da2661108)
http://www.ubuntu.com/usn/usn-642-1(af854a3a-2127-422b-91ae-364da2661108)
http://www.wekk.net/research/CVE-2008-3889/(af854a3a-2127-422b-91ae-364da2661108)
https://www.exploit-db.com/exploits/6472(af854a3a-2127-422b-91ae-364da2661108)

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.