LWN.net Logo

proftpd-dfsg: privilege escalation

Package(s):proftpd-dfsg CVE #(s):CVE-2012-6095
Created:January 14, 2013 Updated:April 8, 2013
Description: From the Debian advisory:

It has been discovered that in ProFTPd, an FTP server, an attacker on the same physical host as the server may be able to perform a symlink attack allowing to elevate privileges in some configurations.

Alerts:
Debian DSA-2606-1 2013-01-13
Fedora FEDORA-2013-0437 2013-01-30
Fedora FEDORA-2013-0483 2013-01-30
Fedora FEDORA-2013-0468 2013-01-30
Mageia MGASA-2013-0024 2013-02-06
Mandriva MDVSA-2013:053 2013-04-05

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds