openSUSE Security Update : proftpd (openSUSE-2017-481)

medium Nessus Plugin ID 99430

Language:

Synopsis

The remote openSUSE host is missing a security update.

Description

This update for proftpd to version 1.3.5d fixes the following issues :

This security issue was fixed :

- CVE-2017-7418: ProFTPD checked only the last path component when enforcing AllowChrootSymlinks. Attackers with local access could bypass the AllowChrootSymlinks control by replacing a path component (other than the last one) with a symbolic link (bsc#1032443).

These non-security issues were fixed :

- Reduce TLS protocols to TLSv1.1 and TLSv1.2

- Disable TLSCACertificateFile

- Add TLSCertificateChainFile

- All FTP logins are treated as anonymous logins again

- SSH rekey during authentication could have caused issues with clients.

- Recursive SCP uploads of multiple directories were not handled properly.

- LIST returned different results for file, depending on path syntax.

- 'AuthAliasOnly on' in server config broke anonymous logins.

- Fixed memory leak when mod_facl is used.

- Fix systemd vs SysVinit inconsistency

Solution

Update the affected proftpd packages.

See Also

https://bugzilla.opensuse.org/show_bug.cgi?id=1032443

Plugin Details

Severity: Medium

ID: 99430

File Name: openSUSE-2017-481.nasl

Version: 3.5

Type: local

Agent: unix

Published: 4/18/2017

Updated: 1/19/2021

Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Continuous Assessment, Nessus

Risk Information

VPR

Risk Factor: Low

Score: 3.6

CVSS v2

Risk Factor: Low

Base Score: 2.1

Vector: CVSS2#AV:L/AC:L/Au:N/C:N/I:P/A:N

CVSS v3

Risk Factor: Medium

Base Score: 5.5

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

Vulnerability Information

CPE: p-cpe:/a:novell:opensuse:proftpd-ldap-debuginfo, p-cpe:/a:novell:opensuse:proftpd-sqlite-debuginfo, cpe:/o:novell:opensuse:42.2, p-cpe:/a:novell:opensuse:proftpd-mysql-debuginfo, cpe:/o:novell:opensuse:42.1, p-cpe:/a:novell:opensuse:proftpd-mysql, p-cpe:/a:novell:opensuse:proftpd-lang, p-cpe:/a:novell:opensuse:proftpd-sqlite, p-cpe:/a:novell:opensuse:proftpd-debuginfo, p-cpe:/a:novell:opensuse:proftpd, p-cpe:/a:novell:opensuse:proftpd-debugsource, p-cpe:/a:novell:opensuse:proftpd-pgsql, p-cpe:/a:novell:opensuse:proftpd-devel, p-cpe:/a:novell:opensuse:proftpd-radius, p-cpe:/a:novell:opensuse:proftpd-ldap, p-cpe:/a:novell:opensuse:proftpd-radius-debuginfo, p-cpe:/a:novell:opensuse:proftpd-pgsql-debuginfo

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Patch Publication Date: 4/18/2017

Reference Information

CVE: CVE-2017-7418