Skip to content

Update chroot symlink check#765

Merged
tgauth merged 3 commits into
PowerShell:latestw_allfrom
tgauth:update-chroot-symlink
Feb 20, 2025
Merged

Update chroot symlink check#765
tgauth merged 3 commits into
PowerShell:latestw_allfrom
tgauth:update-chroot-symlink

Conversation

@tgauth

@tgauth tgauth commented Nov 18, 2024

Copy link
Copy Markdown
Collaborator

PR Summary

  • add check to symlink creation to ensure target path is inside chroot, when applicable, using existing logic from file_in_chroot_jail() and realpath()

PR Context

@tgauth tgauth merged commit 41734eb into PowerShell:latestw_all Feb 20, 2025
@tgauth tgauth deleted the update-chroot-symlink branch February 20, 2025 21:26
hazelduvall pushed a commit to hazelduvall/openssh-portable that referenced this pull request May 6, 2026
* start sftp chroot symlink fix

* update symlink logic chroot check

* fix order
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

chroot escape in Win32 sftp-server

3 participants