CVE-2012-6095 on Ubuntu 16.04 LTS (xenial) - medium.
Description:
ProFTPD before 1.3.5rc1, when using the UserOwner directive, allows local users to modify the ownership of arbitrary files via a race condition and a symlink attack on the (1) MKD or (2) XMKD commands.