|
MIT Kerberos GSSFTP contains a flaw that may allow a remote denial of service. The issue is triggered when GSSFTP fails to check user credentials while executing specific FTP commands, and will result in loss of availability for the system. If the user is allready authenticated with a local account, the same flaw could be exploited in order to obtain administrative (root) privileges on the system.
|