Local Privilege Escalation in Qpopper by Qualcomm
CVE-2000-0442

Currently unrated

Key Information:

Vendor
Qualcomm
Vendor
CVE Published:
24 May 2000

Summary

Qpopper, an email server software developed by Qualcomm, is susceptible to a local privilege escalation vulnerability that affects versions 2.53 and earlier. The flaw arises when local users manipulate a formatting string within the From: header, which is subsequently processed by the euidl command. This exploitation potentially allows unauthorized users to gain elevated privileges within the system, posing a significant risk to the integrity and confidentiality of the affected server.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.