CVE-2006-6008: Medium severity netkit netkit vulnerability
ftpd in Linux Netkit (linux-ftpd) 0.17, and possibly other versions, does not check the return status of certain seteuid, setgid, and setuid calls, which might allow remote authenticated users to gain privileges if these calls fail in cases such as PAM failures or resource limits, a different vulnerability than CVE-2006-5778.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2006-6008?
CVE-2006-6008 is classified as a high severity vulnerability due to the potential for privilege escalation.
How do I fix CVE-2006-6008?
To fix CVE-2006-6008, update to a version of Linux Netkit that has addressed this vulnerability.
Who is affected by CVE-2006-6008?
CVE-2006-6008 affects remote authenticated users of Linux Netkit ftpd version 0.17 and possibly other vulnerable versions.
What types of attacks are possible due to CVE-2006-6008?
Exploitation of CVE-2006-6008 could allow remote authenticated users to gain elevated privileges on the system.
Is there a workaround for CVE-2006-6008?
There are no known workarounds for CVE-2006-6008, and it is recommended to apply available patches.