[4594] in bugtraq
Re: Announcement: Important
daemon@ATHENA.MIT.EDU (Bruce Perens)
Tue May 27 18:28:05 1997
Date: Tue, 27 May 1997 10:27:00 PDT
Reply-To: Bruce Perens <bruce@pixar.com>
From: Bruce Perens <bruce@PIXAR.COM>
X-To: Alan Cox <alan@cymru.net>,
ewt@redhat.com, bs@suse.de, security@caldera.com,
adam@yggdrasil.com, mark@wgs.com, rf@lst.de, security@debian.org,
heiko@unifix.de, florian@knorke.saar.de
To: BUGTRAQ@NETSPACE.ORG
I number of people have pointed out that the FTP exploit I warned CERT
about on December 28 was already known at that time. However, it is still
not repaired in commercial BSD-derived systems to this day. One would think
that they would install the two-line fix if they were informed about it.
Thanks
Bruce
--
Bruce Perens K6BP Bruce@Pixar.com 510-215-3502
Finger bruce@master.Debian.org for PGP public key.
PGP fingerprint = 88 6A 15 D0 65 D4 A3 A6 1F 89 6A 76 95 24 87 B3