CVE-2020-28014, CVE-2021-27216: PID file handling
authorHeiko Schlittermann (HS12-RIPE) <hs@schlittermann.de>
Thu, 25 Mar 2021 21:48:09 +0000 (22:48 +0100)
committerHeiko Schlittermann (HS12-RIPE) <hs@schlittermann.de>
Tue, 27 Apr 2021 22:40:37 +0000 (00:40 +0200)
commit43c6f0b83200b7082353c50187ef75de3704580a
tree3c274c7fba32f4654d755f7020064ee30f7d7946
parentbe31ef213f118abe5fc68732f5492b6b16d28b87
CVE-2020-28014, CVE-2021-27216: PID file handling

Arbitrary PID file creation, clobbering, and deletion.
Patch provided by Qualys.

(cherry picked from commit 974f32939a922512b27d9f0a8a1cb5dec60e7d37)
doc/doc-txt/ChangeLog
src/src/daemon.c
src/src/exim.c
test/stderr/0433