[Dovecot] Security Hole in 1.0.13?

Timo Sirainen tss at iki.fi
Sun May 18 12:46:44 EEST 2008


On Sun, 2008-05-18 at 15:03 +0800, Lawrence Sheed wrote:
> Corrected that in the conf file.
> 
> If I check the dovecot user, I see its been compromised also - a bunch  
> of crap in their login folder.

What crap? By login folder do you mean /var/run/do[t]vecot/login? It's
supposed to have some files in it. If they're clearly not created by
Dovecot, could you send them to me?

-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://dovecot.org/pipermail/dovecot/attachments/20080518/7aa147a5/attachment.bin 


More information about the dovecot mailing list