Linux-ftpd-ssl

Linux-ftpd-ssl

2 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.07%
  • Published 07.11.2006 18:07:00
  • Last modified 09.04.2025 00:30:58

ftpd in linux-ftpd 0.17, and possibly other versions, performs a chdir before setting the UID, which allows local users to bypass intended access restrictions by redirecting their home directory to a restricted directory.

Exploit
  • EPSS 25.48%
  • Published 07.11.2005 02:02:00
  • Last modified 03.04.2025 01:03:51

Buffer overflow in the SSL-ready version of linux-ftpd (linux-ftpd-ssl) 0.17 allows remote attackers to execute arbitrary code by creating a long directory name, then executing the XPWD command.