-
Ubuntu: 984-1: LFTP vulnerability
LinuxSecurity.com: It was discovered that LFTP incorrectly filtered filenames suggestedby Content-Disposition headers. If a user or automated system were trickedinto downloading a file from a malicious site, a remote attacker couldcreate the file with an arbitrary name, such as a dotfile, and possibly runarbitrary code. [More...]
More...
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
Forum Rules