[WarpCast] Security bug in FTPServ 0.78-0.84; FPTServ 0.85 released - 7/05/00




             Network Trace for OS/2
- Turn any OS/2 machine into a network probe.
- Take a trace on any segment in the network, in minutes.
- A software-only, hardware-independent implementation.
      http://www.goldencode.com/ntrace.html

*********************************************************************
 
Source: Konstantin Okounkov (admin@os2.ru)
Moderator: Trevor Smith (trevor@haligonian.com)
-------------------------------------------------------

Lately, we found out that the last releases (from ver. 0.78 to
ver.0.84) of FTPServ contain a serious security bug. This bug allows
any person that has a write permission to one directory on the server
to view any file from your physical disk.

  http://os2.ru/materials/pub/200007/ftpserv.en.shtml 

Accordingly, Peter Moylan was released FTPServ 0.85. It can be found
at his WWW site:

  http://eepjm.newcastle.edu.au/os2/software.html#ftpserver 


 
-------------------------------------------------------
 To subscribe, unsubscribe, or for more information on
 WarpCast, visit: http://www.warpcast.com/ 
-------------------------------------------------------

WarpCast Archives - Courtesy of VOICE International