oss-sec mailing list archives

CVE request: proftpd before 1.3.3d


From: Hanno Böck <hanno () hboeck de>
Date: Fri, 14 Jan 2011 20:56:14 +0100

See:
http://www.securityfocus.com/bid/44933
http://phrack.org/issues.html?issue=67&id=7#article
http://bugs.gentoo.org/show_bug.cgi?id=348998

Quote from securityfocus:
"ProFTPD is prone to a remote heap-based buffer-overflow vulnerability.

Attackers can exploit this vulnerability to execute arbitrary code with
SYSTEM-level privileges. Failed exploit attempts will result in a
denial-of-service condition."

Please assign CVE (a 2010 / last year one).

-- 
Hanno Böck              mail/jabber: hanno () hboeck de
GPG: BBB51E42           http://www.hboeck.de/

Attachment: signature.asc
Description:


Current thread: