[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[linux-security] format string bugs in gftp
- To: linux-security
- Subject: [linux-security] format string bugs in gftp
- From: Martin Siegert <siegert@sfu.ca>
- Date: Thu, 3 May 2001 18:24:05 -0700
- User-Agent: Mutt/1.2.5i
Topic
=====
format string vulnerability in gftp.
Problem Description
===================
gftp versions prior to 2.0.8 have a problem with format strings allowing
malicious ftp servers to potentially execute code on the gftp user's system.
Affected Systems
================
Systems that use gftp with versions < 2.0.8
Solution
========
upgrade to version 2.0.8
RedHat 6.x
----------
rpm -Fvh gftp-2.0.8-1.i386.rpm
RedHat 7.x
----------
rpm -Fvh gftp-2.0.8-1.i386.rpm
Mandrake 7.1
------------
rpm -Fvh gftp-2.0.8-1.2mdk.i586.rpm
Mandrake 7.2, 8.0
-----------------
rpm -Fvh gftp-2.0.8-1.1mdk.i586.rpm