CVE-2005-1152 Information

Description

popauth.c in qpopper 4.0.5 and earlier does not properly set the umask which may cause qpopper to create files with group or world-writable permissions.

Reference

http://bugs.gentoo.org/attachment.cgi?id=58329&action=view http://bugs.gentoo.org/show_bug.cgi?id=90622 http://secunia.com/advisories/15475 http://secunia.com/advisories/15478 http://secunia.com/advisories/15505 http://www.debian.org/security/2005/dsa-728 http://www.gentoo.org/security/en/glsa/glsa-200505-17.xml

Share on: