ProFTPD 1.2.0rc2 log_pri() Format String Vulnerability

Solution:
Mandrake Linux has released a security advisory (MDKSA-2001:21) which contains fixes.

Debian has released a security advisory (DSA-029-2) which contains fixes.

Conectiva Linux has released a security advisory (CLA-2001-380) which contains fixes.

Information on how to obtain and install available fixes can be found in the attached advisories.

The vendor has confirmed this issue and has released ProFTPD 1.2.0rc3 which addresses the problem. ProFTPD users are advised to upgrade as soon as possible.


ProFTPD Project ProFTPD 1.2 pre3

ProFTPD Project ProFTPD 1.2 pre1

ProFTPD Project ProFTPD 1.2 pre2

ProFTPD Project ProFTPD 1.2 pre9

ProFTPD Project ProFTPD 1.2 pre4

ProFTPD Project ProFTPD 1.2 pre5

ProFTPD Project ProFTPD 1.2 pre8

ProFTPD Project ProFTPD 1.2 pre7

ProFTPD Project ProFTPD 1.2 pre6

ProFTPD Project ProFTPD 1.2 pre10


 

Privacy Statement
Copyright 2010, SecurityFocus