[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#790245: jessie-pu: package ftpd-ssl/0.17.33+0.3-1deb8u1



Control: tags -1 + confirmed

On Sat, 2015-06-27 at 19:47 +0200, Mats Erik Andersson wrote:
> the SSL-enhanced FTP server built from linux-ftpd-ssl
> was recently uncovered to produce a denial of service,
> as was demonstrated in #788331.

That bug should be closed in the changelog.

+linux-ftpd-ssl (0.17.33+0.3-1deb8u1) jessie; urgency=medium

That should be 0.17.33+0.3-1+deb8u1.

> The package has been updated in testing and unstable, but
> since the error is present ever since at least June, 2010
> [sic!], I would like to propose an update also to the stable
> package release. The needed change can be made verbatim
> with the alteration to unstable. The corresponding
> debdiff output and a description is attached.

Please go ahead, thanks (bearing in mind the notes above).

> Observe that the update of the source patch
> 'debian/patches/500-ssl.diff' is the first
> change during five years of time, so the very
> same change is applicable to old-old-stable!

Have you considered preparing updates for wheezy and squeeze-lts?

Regards,

Adam


Reply to: