proftpd DoS / CVE-2019-18217

Moritz Mühlenhoff jmm at inutil.org
Tue Nov 5 22:54:24 GMT 2019


On Mon, Nov 04, 2019 at 09:10:29PM +0100, Hilmar Preuße wrote:
> On 10/24/19 8:25 PM, Moritz Mühlenhoff wrote:
> > On Thu, Oct 24, 2019 at 06:30:07PM +0200, Hilmar Preuße wrote:
> 
> Hi Moritz,
> 
> >> Attached is a debdiff für stretch and buster. I built new packages based
> >> on these diff's and gave them a few tests (install, run, connect, up-
> >> and downloading files). Unfortunately I can't really test if that patch
> >> really solves the issue. However as it not really differs from the
> >> upstream patch I guess it does.
> > 
> > Thanks! 
> > 
> >> Do you want me to provide the source packages?
> > 
> > I'll review the debdiffs later today or tomorrow and will take care of
> > the builds/upload, thanks!
> > 
> Did you find the time to review and upload them?

Now released, thanks!

Cheers,
        Moritz



More information about the Pkg-proftpd-maintainers mailing list