NetBSD Security-Officer | 17 Aug 2004 19:48
Picon

NetBSD Security Advisory 2004-009: ftpd root escalation


-----BEGIN PGP SIGNED MESSAGE-----

		 NetBSD Security Advisory 2004-009
		 =================================

Topic:		ftpd root escalation

Version:	NetBSD-current:	source prior to Aug 10, 2004
		NetBSD 2.0 branch: source prior to Aug 15, 2004
		NetBSD 1.6.2:	affected
		NetBSD 1.6.1:	affected
		NetBSD 1.6:	affected
		NetBSD-1.5.3:	affected
		NetBSD-1.5.2:	affected
		NetBSD-1.5.1:	affected
		NetBSD-1.5:	affected
		pkgsrc:		net/lukemftpd all versions
		pkgsrc:		net/tnftpd prior to tnftpd-20040810

Severity:	Remote root for systems providing ftpd service

Fixed:		NetBSD-current:		Aug 10, 2004
		NetBSD-2.0 branch:      Aug 15, 2004 (2.0 will include the fix)
		NetBSD-1.6 branch:	Pullups not yet issued.
					 See Solutions section.
					 (1.6.3 will include the fix)
		NetBSD-1.5 branch:	Pullups not yet issued.
					  See Solutions section.
		pkgsrc  net/lukemftpd:  Update pkgsrc, this package was
(Continue reading)


Gmane