This update addresses an arbitrary file copy vulnerability in mod_copy in ProFTPD, which allowed for remote code execution and information disclosure without authentication due to not honoring <Limit>
constraints.
Upstream bug: http://bugs.proftpd.org/show_bug.cgi?id=4372
The upstream fix for this issue has been back-ported to ProFTPD 1.3.5e for EPEL-7.
Please login to add feedback.
This update has been submitted for testing by pghmcfc.
This update test gating status has been changed to 'waiting'.
This update test gating status has been changed to 'ignored'.
This update has been pushed to testing.
This update can be pushed to stable now if the maintainer wishes
This update has been submitted for stable by pghmcfc.
This update has been pushed to stable.