[13242] in bugtraq
SECURITY ALERT - WAR FTP DAEMON ALL VERSIONS
daemon@ATHENA.MIT.EDU (Jarle Aase)
Wed Jan 5 14:18:17 2000
Mime-Version: 1.0
Content-Type: text/plain; charset="iso-8859-1"
Message-Id: <NCBBIJAIBDGCMNAHBHJPEEKIFFAA.jgaa@jgaa.com>
Date: Wed, 5 Jan 2000 12:41:05 +0100
Reply-To: Jarle Aase <jgaa@JGAA.COM>
From: Jarle Aase <jgaa@JGAA.COM>
X-To: War-Software <war-software@war.jgaa.com>,
BUGTRAQ@SECURITYFOCUS.COM
To: BUGTRAQ@SECURITYFOCUS.COM
Content-Transfer-Encoding: 8bit
There has been reported a serious security problem with War FTP Daemon 1.70. The problem may also affect 1.6* and previous versions.
I am currently researching the problem, and will post an upgrade for 1.6* within 24 hours if that version is affected. A fix for 1.70 is in the works, but will not be available in a few days.
I STRONGLY ADVICE ALL SERVER OPERATORS TO TAKE THE SERVER OFF-LINE UNTIL FURTHER NOTICE!
I'm sorry for any inconvenience caused by this problem.
Jarle