FLAME - security advisories on the 23rd ? uncool idea is uncool

Mike Tancsa mike at sentex.net
Fri Dec 23 17:55:37 UTC 2011


On 12/23/2011 12:25 PM, Stephen Montgomery-Smith wrote:
> 
> It is this chroot issue that bothers me.  From my reading of the ftpd
> man page, if I have anonymous ftp to my server, it seems that I am using
> chroot with ftpd, and there is no way to stop this happening.
> 
> Am I correct, or have I missed something?  (I am hoping I missed
> something.)

Depends what they can write to and upload. The thread starts here

http://lists.freebsd.org/pipermail/freebsd-security/2011-November/006085.html

that discusses it in more detail

	---Mike



-- 
-------------------
Mike Tancsa, tel +1 519 651 3400
Sentex Communications, mike at sentex.net
Providing Internet services since 1994 www.sentex.net
Cambridge, Ontario Canada   http://www.tancsa.com/


More information about the freebsd-stable mailing list