First published: Tue Nov 16 2010(Updated: )
Dovecot in Apple Mac OS X 10.6.5 10H574 does not properly manage memory for user names, which allows remote authenticated users to read the private e-mail of other persons in opportunistic circumstances via standard e-mail clients accessing a user's own mailbox, related to a "memory aliasing issue."
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple macOS Server | =10.6.5-10h574 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-4011 has a high severity rating due to its potential exploitation, allowing unauthorized access to private emails.
To fix CVE-2010-4011, update to a version of Apple Mac OS X that is above 10.6.5-10H574.
Users of Apple Mac OS X Server version 10.6.5-10H574 are affected by CVE-2010-4011.
CVE-2010-4011 is a memory management vulnerability that leads to information disclosure.
Yes, CVE-2010-4011 can be exploited by remote authenticated users to access emails of other users.