Alerts This Week
Warning Icon 1 681
Alerts This Week
Warning Icon 1 681

Gentoo: GLSA 200611-05 High: Netkit FTP Server Privilege Escalation

gentoo
Calendar Grey November 10, 2006
Dist Gentoo Esm H88
Critical alert for Gentoo: Netkit FTP Server flaw permitting unauthorized file retrieval.
An incorrect seteuid() call could allow an FTP user to access some files or directories that would normally be inaccessible.

Summary

Gentoo Linux Security Advisory GLSA 200611-05 https://security.gentoo.org/ Severity: High Title: Netkit FTP Server: Privilege escalation Date: November 10, 2006 Bugs: #150292 ID: 200611-05

Synopsis ======= An incorrect seteuid() call could allow an FTP user to access some files or directories that would normally be inaccessible.
Background ========= net-ftp/ftpd is the Linux Netkit FTP server with optional SSL support.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 net-ftp/ftpd < 0.17-r4 >= 0.17-r4
========== Paul Szabo reported that an incorrect seteuid() call after the chdir() function can allow an attacker to access a normally forbidden directory, i...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Related News

Your message here