Re: SSRT3606 rev.2 wu-ftpd off by one vulnerability

From: Angel (angel+news_at_spamcop.net)
Date: 06/11/04


Date: 11 Jun 2004 05:26:38 GMT


["Followup-To:" header set to news.admin.net-abuse.email.]
On 2004-06-11, Felix Tilley <ftilley@localhost.localdomain> wrote:
> In article <dwYxc.3388$kb2.1543@news.cpqcorp.net>, Thu, 10 Jun 2004
> 05:31:05 -0700, "Security Alert" <secure@cup.hp.com> wrote:
>
> [snip crap]
>
> Is anyone stupid enough to still be using wu-ftpd?

It's on my jumpstart server. Of course, I don't allow access to
that from outside.
In fact, I don't allow telnet or ftp access at all.

-- 
If you see an attachment here, you are using a buggy newsreader on a
broken by design OS distributed by an evil monopolist.
begin  bug.exe


Relevant Pages