Advisories ยป MGASA-2025-0015

Updated proftpd packages fix security vulnerability

Publication date: 20 Jan 2025
Modification date: 20 Jan 2025
Type: security
Affected Mageia releases : 9
CVE: CVE-2024-48651

Description

In ProFTPD through 1.3.8b before cec01cc, supplemental group inheritance
grants unintended access to GID 0 because of the lack of supplemental
groups from mod_sql. (CVE-2024-48651)
                

References

SRPMS

9/core