Security Advisory

CVE-2012-6095

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2013-01-24 21:00:00
Last updated 2024-08-06 21:21:28
Assigner redhat
State PUBLISHED

Description

ProFTPD before 1.3.5rc1, when using the UserOwner directive, allows local users to modify the ownership of arbitrary files via a race condition and a symlink attack on the (1) MKD or (2) XMKD commands.