CVE-2010-20103

Description

A flaw was found in ProFTPD. On November 28, 2010, attackers accessed the ProFTPD distribution server and added a backdoor to version 1.3.3.c source files. The backdoor introduced by the attackers allows unauthenticated users remote root access to systems running the modified ProFTPD version. The issue was identified in December and was promptly addressed shortly after.

Statement

Red Hat Product Security has determined that this vulnerability does not affect any currently supported Red Hat product. This assessment may evolve based on further analysis and discovery. For more information about this vulnerability and the products it affects, please see the linked references.

Understanding the Weakness (CWE)

Other,Integrity

Technical Impact: Varies by Context; Alter Execution Logic

Frequently Asked Questions

Want to get errata notifications? Sign up here.