Unrated severityNVD Advisory· Published Mar 26, 2021· Updated Aug 4, 2024
CVE-2020-7468
CVE-2020-7468
Description
In FreeBSD 12.2-STABLE before r365772, 11.4-STABLE before r365773, 12.1-RELEASE before p10, 11.4-RELEASE before p4 and 11.3-RELEASE before p14 a ftpd(8) bug in the implementation of the file system sandbox, combined with capabilities available to an authenticated FTP user, can be used to escape the file system restriction configured in ftpchroot(5). Moreover, the bug allows a malicious client to gain root privileges.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- FreeBSD/FreeBSDdescription
Patches
Vulnerability mechanics
References
1- security.freebsd.org/advisories/FreeBSD-SA-20:30.ftpd.ascmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.