Mailing the story:

Debian alert: New wu-ftpd packages fix buffer overflow

  • Mailing list (Posted by on CST)
  • Story Type: Security; Groups: Debian
iSEC Security Research reports that wu-ftpd contains an off-by-one bug in the fb_realpath function which could be exploited by a logged-in user (local or anonymous) to gain root privileges. A demonstration exploit is reportedly available.
What is your name?

What is your E-Mail address?

What is the email address of the recipient?

Add a special note from yourself?