First published: Mon Apr 18 2011(Updated: )
pure-ftpd 1.0.22, as used in SUSE Linux Enterprise Server 10 SP3 and SP4, and Enterprise Desktop 10 SP3 and SP4, when running OES Netware extensions, creates a world-writeable directory, which allows local users to overwrite arbitrary files and gain privileges via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Novell Suse Linux | =10-sp3 | |
Novell Suse Linux | =10-sp4 | |
Novell Suse Linux | =11-sp4 | |
Pureftpd Pure-ftpd | =1.0.22 | |
Novell Suse Linux | =11-sp3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.