CVE
- Id
- 48900
- CVE No.
- CVE-2011-0988
- Status
- Candidate
- Description
- pure-ftpd 1.0.22, as used in SUSE Linux Enterprise Server 10 SP3 and SP4, and Enterprise Desktop 10 SP3 and SP4, when running OES Netware extensions, creates a world-writeable directory, which allows local users to overwrite arbitrary files and gain privileges via unspecified vectors.
- Phase
- Assigned (20110214)
- Votes
- None (candidate not yet proposed)
- Comments