Unrated severityNVD Advisory· Published Feb 25, 2020· Updated Aug 4, 2024
CVE-2020-8793
CVE-2020-8793
Description
OpenSMTPD before 6.6.4 allows local users to read arbitrary files (e.g., on some Linux distributions) because of a combination of an untrusted search path in makemap.c and race conditions in the offline functionality in smtpd.c.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- OpenSMTPD/OpenSMTPDdescription
Patches
Vulnerability mechanics
References
5- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/OPH4QU4DNVHA7ACFXMYFCEP5PSXXPN4E/mitrevendor-advisoryx_refsource_FEDORA
- usn.ubuntu.com/4294-1/mitrevendor-advisoryx_refsource_UBUNTU
- seclists.org/fulldisclosure/2020/Feb/28mitremailing-listx_refsource_FULLDISC
- www.openwall.com/lists/oss-security/2020/02/24/4mitremailing-listx_refsource_MLIST
- www.openbsd.org/security.htmlmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.