vsftpd-2.0.5-16.1.1.2.AXS3

エラータID: AXSA:2011-94:01

Release date: 
Wednesday, March 16, 2011 - 10:38
Subject: 
vsftpd-2.0.5-16.1.1.2.AXS3
Affected Channels: 
Asianux Server 3 for x86_64
Asianux Server 3 for x86
Severity: 
High
Description: 

vsftpd is a Very Secure FTP daemon. It was written completely from scratch.
Security issues fixed with this release:
CVE-2011-0762
The vsf_filename_passes_filter function in ls.c in vsftpd before 2.3.3 allows remote authenticated users to cause a denial of service (CPU consumption and process slot exhaustion) via crafted glob expressions in STAT commands in multiple FTP sessions, a different vulnerability than CVE-2010-2632.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. vsftpd-2.0.5-16.1.1.2.AXS3.src.rpm
    MD5: 6a7f1e54d283f1e703bce08802475bd5
    SHA-256: 01acb92a7beb5a68e8ce829b546f81b39ea9f781f1fffeefd5199464373c19bf
    Size: 196.64 kB

Asianux Server 3 for x86
  1. vsftpd-2.0.5-16.1.1.2.AXS3.i386.rpm
    MD5: 495c030d29c63583540a1ea4a1bf1203
    SHA-256: dd38920dc64f8c8956f20726b39d1300919fc6bef8e09a0ae3c310fbc90311b8
    Size: 142.86 kB

Asianux Server 3 for x86_64
  1. vsftpd-2.0.5-16.1.1.2.AXS3.x86_64.rpm
    MD5: 663dbcc9177b7187a7011a6f7e449400
    SHA-256: 53f2182ea129e58ffa57c93cebe44b9c48ad3dbe354958603fc8a862e9db933e
    Size: 141.34 kB