CVE-2010-0535: Medium severity Apple Mac OS X Server vulnerability
Dovecot in Apple Mac OS X 10.6 before 10.6.3, when Kerberos is enabled, does not properly enforce the service access control list (SACL) for sending and receiving e-mail, which allows remote authenticated users to bypass intended access restrictions via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-0535?
CVE-2010-0535 has a medium severity rating due to the potential for unauthorized access by remote authenticated users.
How do I fix CVE-2010-0535?
To fix CVE-2010-0535, upgrade to Apple Mac OS X 10.6.3 or later where the vulnerability has been addressed.
What are the affected software versions for CVE-2010-0535?
CVE-2010-0535 affects Apple Mac OS X versions 10.6.0, 10.6.1, and 10.6.2.
Can CVE-2010-0535 be exploited remotely?
Yes, CVE-2010-0535 can be exploited by remote authenticated users due to improper enforcement of access controls.
What is the impact of CVE-2010-0535?
The impact of CVE-2010-0535 allows remote authenticated users to bypass intended access restrictions on email.