Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 30 Mar 2015 15:53:18 +0200
From:      Kurt Jaeger <lists@opsec.eu>
To:        Paul Macdonald <paul@ifdnrg.com>
Cc:        freebsd-ports@freebsd.org
Subject:   Re: Proftpd bug, chroot does not allow for access to or creation of folders named 'lib'
Message-ID:  <20150330135318.GI62590@home.opsec.eu>
In-Reply-To: <551950EC.2030205@ifdnrg.com>
References:  <551460C0.3060609@ifdnrg.com> <55195013.3090509@quip.cz> <551950EC.2030205@ifdnrg.com>

next in thread | previous in thread | raw e-mail | index | archive | help
Hi!

> > I can confirm this problem on FreeBSD 8.4-RELEASE i386 with 
> > proftpd-1.3.5_2
> >
> > Is some patch available to fix this? (I cannot disable DefaultChroot)
> >
> a bug report has been filed.
> 
> https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=198938

I've updated the PR with some short info what I found. Basically,
there's a special case in src/fsio.c which explicitly denies
writing to /etc and /lib in the chroot-case, refering to 3 year
old AUSCERT warnings for proftpd with FreeBSD.

Someone needs to check whether those warnings still apply to current-day
proftpd and freebsd.

-- 
pi@opsec.eu            +49 171 3101372                         5 years to go !



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20150330135318.GI62590>