proftpd DoS / CVE-2019-18217

Moritz Muehlenhoff jmm at inutil.org
Mon Nov 4 21:52:04 GMT 2019


On Mon, Nov 04, 2019 at 09:10:29PM +0100, Hilmar Preuße wrote:
> On 10/24/19 8:25 PM, Moritz Mühlenhoff wrote:
> > On Thu, Oct 24, 2019 at 06:30:07PM +0200, Hilmar Preuße wrote:
> 
> Hi Moritz,
> 
> >> Attached is a debdiff für stretch and buster. I built new packages based
> >> on these diff's and gave them a few tests (install, run, connect, up-
> >> and downloading files). Unfortunately I can't really test if that patch
> >> really solves the issue. However as it not really differs from the
> >> upstream patch I guess it does.
> > 
> > Thanks! 
> > 
> >> Do you want me to provide the source packages?
> > 
> > I'll review the debdiffs later today or tomorrow and will take care of
> > the builds/upload, thanks!
> > 
> Did you find the time to review and upload them?

They're uploaded/built and should be released soon, just pending some final
tests.

Cheers,
        Moritz




More information about the Pkg-proftpd-maintainers mailing list