qpopper POP server creates lock files with predictable names, which allows local users to cause a denial of service for other users (lack of mail access) by creating lock files for other mail boxes.
The product does not properly acquire or release a lock on a resource, leading to unexpected resource state changes and behaviors.
Link | Tags |
---|---|
http://marc.info/?l=bugtraq&m=95624629924545&w=2 | mailing list |
http://marc.info/?l=bugtraq&m=95634229925906&w=2 | mailing list |
http://www.securityfocus.com/bid/1132 | broken link third party advisory vdb entry |