Security Advisory

CVE-2011-0988

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2011-04-18 17:00:00
Last updated 2024-08-06 22:14:26
Assigner mitre
State PUBLISHED

Description

pure-ftpd 1.0.22, as used in SUSE Linux Enterprise Server 10 SP3 and SP4, and Enterprise Desktop 10 SP3 and SP4, when running OES Netware extensions, creates a world-writeable directory, which allows local users to overwrite arbitrary files and gain privileges via unspecified vectors.