Possible root compromose with bsdmainutils 6.0.x < 6.0.15 (Debian testing/unstable)
From: Steven Van Acker (deepstar_at_ulyssis.org)
Date: 08/30/04
- Previous message: lion: "[vulnwatch] WFTPD Pro Server 3.21 MLST Command Denial of Service Vulnerability"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Mon, 30 Aug 2004 10:05:26 +0200 To: bugtraq@securityfocus.com
Hi,
this advisory was sent to the maintainers of the bsdmainutils package in
Debian testing/unstable.
With their agreement, I have waited to send it to bugtraq untill now.
To fix the vulnerability, upgrade your bsdmainutils package to version
6.0.15. This package is already in the unstable branch and should find
its way into the testing branch very soon.
(Sorry for the first mail, it's monday morning ;) This time I actually
attached the advisory)
greets,
-- Steven Van Acker deepstar@ulyssis.org
- text/plain attachment: calendar_advisory.txt
- Previous message: lion: "[vulnwatch] WFTPD Pro Server 3.21 MLST Command Denial of Service Vulnerability"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]