Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Sendfile Local Privileged Arbitrary Command Execution Vulnerability

Sendfile is an implementation of the SAFT (simple asynchronous file transfer) protocol for UNIX systems.

Due to a problem dropping privileges completely before running user-specified post-processing commands in the Sendfile daemon, it may be possible for a local user to execute arbitrary commands with elevated privileges.







 

Privacy Statement
Copyright 2009, SecurityFocus