Sendfile Local Privileged Arbitrary Command Execution Vulnerability

Sendfile is an implementation of the SAFT (simple asynchronous file transfer) protocol for UNIX systems.

Due to a problem dropping privileges completely before running user-specified post-processing commands in the Sendfile daemon, it may be possible for a local user to execute arbitrary commands with elevated privileges.


 

Privacy Statement
Copyright 2010, SecurityFocus