Описание
In ProFTPD through 1.3.8b before cec01cc, supplemental group inheritance grants unintended access to GID 0 because of the lack of supplemental groups from mod_sql.
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | 1.3.8.c+dfsg-2 |
esm-apps/bionic | not-affected | code not present |
esm-apps/focal | released | 1.3.6c-2ubuntu0.1 |
esm-apps/jammy | released | 1.3.7c+dfsg-1ubuntu0.1 |
esm-apps/noble | released | 1.3.8.b+dfsg-1ubuntu0.1 |
esm-apps/xenial | not-affected | code not present |
focal | released | 1.3.6c-2ubuntu0.1 |
jammy | released | 1.3.7c+dfsg-1ubuntu0.1 |
noble | released | 1.3.8.b+dfsg-1ubuntu0.1 |
oracular | released | 1.3.8.b+dfsg-2ubuntu1.24.10.1 |
Показывать по
7.5 High
CVSS3
Связанные уязвимости
In ProFTPD through 1.3.8b before cec01cc, supplemental group inheritance grants unintended access to GID 0 because of the lack of supplemental groups from mod_sql.
In ProFTPD through 1.3.8b before cec01cc, supplemental group inheritan ...
In ProFTPD through 1.3.8b before cec01cc, supplemental group inheritance grants unintended access to GID 0 because of the lack of supplemental groups from mod_sql.
Уязвимость компонента mod_sql FTP-сервера ProFTPD, позволяющая нарушителю повысить свои привилегии
7.5 High
CVSS3