CVE-2007-6598
published 2008-01-04CVE-2007-6598: Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote…
PriorityP429medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
1.96%
78.2th percentile
Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | dovecot | < dovecot 1:1.0.10-1 (bookworm) | dovecot 1:1.0.10-1 (bookworm) |
| dovecot | dovecot | <= 1.0.9 | — |
| dovecot | dovecot | >= 0 < 1:1.0.10-1 | 1:1.0.10-1 |
| dovecot | dovecot | >= 0 < 1:1.0.10-1 | 1:1.0.10-1 |
| dovecot | dovecot | >= 0 < 1:1.0.10-1 | 1:1.0.10-1 |
| dovecot | dovecot | >= 0 < 1:1.0.10-1 | 1:1.0.10-1 |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv6.8MEDIUM
vendor_debian6.8LOW
vendor_redhat6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Dovecot vulnerability
vendor_ubuntu·2008-01-10
CVE-2007-6598 Dovecot vulnerability
Title: Dovecot vulnerability
Summary: Dovecot vulnerability
It was discovered that in very rare configurations using LDAP, Dovecot may
reuse cached connections for users with the same password. As a result,
a user may be able to login as another if the connection is reused.
The default Ubuntu configuration of Dovecot was not vulnerable.
Instructions: In general, a standard system upgrade is sufficient to effect the
necessary changes.
Red Hat
dovecot LDAP+auth cache user login mixup
vendor_redhat·2007-12-29·CVSS 6.8
CVE-2007-6598 [MEDIUM] dovecot LDAP+auth cache user login mixup
dovecot LDAP+auth cache user login mixup
Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.
Statement: This issue did not affect versions of Dovecot as shipped with Red Hat Enterprise Linux before version 5.
Debian
CVE-2007-6598: dovecot - Dovecot before 1.0.10, with certain configuration options including use of %vari...
vendor_debian·2007·CVSS 6.8
CVE-2007-6598 [MEDIUM] CVE-2007-6598: dovecot - Dovecot before 1.0.10, with certain configuration options including use of %vari...
Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.
Scope: local
bookworm: resolved (fixed in 1:1.0.10-1)
bullseye: resolved (fixed in 1:1.0.10-1)
forky: resolved (fixed in 1:1.0.10-1)
sid: resolved (fixed in 1:1.0.10-1)
trixie: resolved (fixed in 1:1.0.10-1)
GHSA
GHSA-grp6-gcpf-v967: Dovecot before 1
ghsa_unreviewed·2022-05-01
CVE-2007-6598 [MEDIUM] GHSA-grp6-gcpf-v967: Dovecot before 1
Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.
OSV
CVE-2007-6598: Dovecot before 1
osv·2008-01-04·CVSS 6.8
CVE-2007-6598 [MEDIUM] CVE-2007-6598: Dovecot before 1
Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.
No detection rules found.
No public exploits indexed.
http://dovecot.org/list/dovecot-news/2007-December/000057.htmlhttp://dovecot.org/list/dovecot-news/2007-December/000058.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-10/msg00004.htmlhttp://osvdb.org/39876http://secunia.com/advisories/28227http://secunia.com/advisories/28271http://secunia.com/advisories/28404http://secunia.com/advisories/28434http://secunia.com/advisories/30342http://secunia.com/advisories/32151http://www.debian.org/security/2008/dsa-1457http://www.redhat.com/support/errata/RHSA-2008-0297.htmlhttp://www.securityfocus.com/archive/1/485779/100/0/threadedhttp://www.securityfocus.com/archive/1/485787/100/0/threadedhttp://www.securityfocus.com/bid/27093http://www.ubuntu.com/usn/usn-567-1http://www.vupen.com/english/advisories/2008/0017https://issues.rpath.com/browse/RPL-2076https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10458http://dovecot.org/list/dovecot-news/2007-December/000057.htmlhttp://dovecot.org/list/dovecot-news/2007-December/000058.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-10/msg00004.htmlhttp://osvdb.org/39876http://secunia.com/advisories/28227http://secunia.com/advisories/28271http://secunia.com/advisories/28404http://secunia.com/advisories/28434http://secunia.com/advisories/30342http://secunia.com/advisories/32151http://www.debian.org/security/2008/dsa-1457http://www.redhat.com/support/errata/RHSA-2008-0297.htmlhttp://www.securityfocus.com/archive/1/485779/100/0/threadedhttp://www.securityfocus.com/archive/1/485787/100/0/threadedhttp://www.securityfocus.com/bid/27093http://www.ubuntu.com/usn/usn-567-1http://www.vupen.com/english/advisories/2008/0017https://issues.rpath.com/browse/RPL-2076https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10458
2008-01-04
Published