"value":"OpenSMTPD before 6.6.4 allows local users to read arbitrary files (e.g., on some Linux distributions) because of a combination of an untrusted search path in makemap.c and race conditions in the offline functionality in smtpd.c."
}
]
},
"problemtype":{
"problemtype_data":[
{
"description":[
{
"lang":"eng",
"value":"n/a"
}
]
}
]
},
"references":{
"reference_data":[
{
"url":"https://www.openbsd.org/security.html",
"refsource":"MISC",
"name":"https://www.openbsd.org/security.html"
},
{
"refsource":"MLIST",
"name":"[oss-security] 20200224 Local information disclosure in OpenSMTPD (CVE-2020-8793)",