From owner-freebsd-bugs Thu Oct 31 11:14:19 1996 Return-Path: owner-bugs Received: (from root@localhost) by freefall.freebsd.org (8.7.5/8.7.3) id LAA28860 for bugs-outgoing; Thu, 31 Oct 1996 11:14:19 -0800 (PST) Received: from alpo.whistle.com (alpo.whistle.com [207.76.204.38]) by freefall.freebsd.org (8.7.5/8.7.3) with ESMTP id LAA28846 for ; Thu, 31 Oct 1996 11:14:00 -0800 (PST) Received: from current1.whistle.com (current1.whistle.com [207.76.205.22]) by alpo.whistle.com (8.8.2/8.8.2) with SMTP id LAA20291; Thu, 31 Oct 1996 11:06:15 -0800 (PST) Message-ID: <3278F860.41C67EA6@whistle.com> Date: Thu, 31 Oct 1996 11:06:05 -0800 From: Julian Elischer Organization: Whistle Communications X-Mailer: Mozilla 3.0b6 (X11; I; FreeBSD 2.2-CURRENT i386) MIME-Version: 1.0 To: auscert@auscert.org.au CC: Vadim Kolontsov , wu-ftpd-bugs@academ.com, bugs@freebsd.org Subject: Re: AUSCERT 9610181435 -- vuls in ftpd References: <199610310551.PAA17967@amethyst.auscert.org.au> Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 7bit Sender: owner-bugs@freebsd.org X-Loop: FreeBSD.org Precedence: bulk auscert@auscert.org.au wrote: > > -----BEGIN PGP SIGNED MESSAGE----- > > Content-Type: text/plain; charset=us-ascii > > Hi Vadim, > > Thanks very much for your detailed analysis of the bugs in ftpd. > > As mentioned, we are currently writing an advisory which hopes to > address these vuls. We will make a draft version available for > comment as soon as we can (hopefully within the next few days). > > If the Academ maintainers or the FreeBSD group has any feedback on this > issue we'd like to be CC:ed or contacted so that we can keep up to date > for the release of our advisory. > there have been several such holes plugged.. if you could say WHICH holes your refer to and which VERSIONS of freeBSD, it would be of great assistance.