Gentoo Linux Security Advisory GLSA 200611-05
https://security.gentoo.org/
Severity: High
Title: Netkit FTP Server: Privilege escalation
Date: November 10, 2006
Bugs: #150292
ID: 200611-05
Synopsis
=======
An incorrect seteuid() call could allow an FTP user to access some
files or directories that would normally be inaccessible.
Background
=========
net-ftp/ftpd is the Linux Netkit FTP server with optional SSL support.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 net-ftp/ftpd < 0.17-r4 >= 0.17-r4
==========
Paul Szabo reported that an incorrect seteuid() call after the chdir()
function can allow an attacker to access a normally forbidden
directory, i...
style>.gentoo_availability{display:block;}
Get the latest Linux and open source security news straight to your inbox.