Описание
In ProFTPD through 1.3.8b before cec01cc, supplemental group inheritance grants unintended access to GID 0 because of the lack of supplemental groups from mod_sql.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 1.3.8.c+dfsg-2 |
| esm-apps/bionic | not-affected | code not present |
| esm-apps/focal | released | 1.3.6c-2ubuntu0.1 |
| esm-apps/jammy | released | 1.3.7c+dfsg-1ubuntu0.1 |
| esm-apps/noble | released | 1.3.8.b+dfsg-1ubuntu0.1 |
| esm-apps/xenial | not-affected | code not present |
| focal | released | 1.3.6c-2ubuntu0.1 |
| jammy | released | 1.3.7c+dfsg-1ubuntu0.1 |
| noble | released | 1.3.8.b+dfsg-1ubuntu0.1 |
| oracular | released | 1.3.8.b+dfsg-2ubuntu1.24.10.1 |
Показывать по
EPSS
7.5 High
CVSS3
Связанные уязвимости
In ProFTPD through 1.3.8b before cec01cc, supplemental group inheritance grants unintended access to GID 0 because of the lack of supplemental groups from mod_sql.
In ProFTPD through 1.3.8b before cec01cc, supplemental group inheritan ...
In ProFTPD through 1.3.8b before cec01cc, supplemental group inheritance grants unintended access to GID 0 because of the lack of supplemental groups from mod_sql.
Уязвимость компонента mod_sql FTP-сервера ProFTPD, позволяющая нарушителю повысить свои привилегии
EPSS
7.5 High
CVSS3