-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Wed, 07 Sep 2011 20:39:59 +0000 Source: vsftpd Binary: vsftpd Architecture: i386 Version: 2.3.2-3+squeeze2 Distribution: squeeze-security Urgency: high Maintainer: i386 Build Daemon (murphy) Changed-By: Nico Golde Description: vsftpd - lightweight, efficient FTP server written for security Closes: 622741 Changes: vsftpd (2.3.2-3+squeeze2) stable-security; urgency=high . * Non-maintainer upload by the Security Team. * Disable network isolation due to a problem with cleaning up network namespaces fast enough in kernels < 2.6.35 (CVE-2011-2189). Thanks Ben Hutchings for the patch! * Fix possible DoS via globa expressions in STAT commands by limiting the matching loop (CVE-2011-0762; Closes: #622741). Checksums-Sha1: 4009b3af386823393fee457eec84fa3642163357 141596 vsftpd_2.3.2-3+squeeze2_i386.deb Checksums-Sha256: 7f10d1a506038314dd3aeaa68b3594bd0e8a5b71f193a228a9ed2bb78c58610a 141596 vsftpd_2.3.2-3+squeeze2_i386.deb Files: e5a1cb4d9fcee53e6f7bd806a0464f1d 141596 net extra vsftpd_2.3.2-3+squeeze2_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQIcBAEBCAAGBQJOdoaHAAoJELdq5EKse8nBKLQP/2PxiLneCsUjXDzC8eD+Qgys bxB1ChHYrPt1TwuP6gJ7/qByD6ZTZRN8vTNuuq4lTG2zaxgsIPZrLQEQC+uaGsM2 uE7/RBvlKNn3iOUsCyOF3STR3ROqziOhvOS02m3BOOjNID1bC/OtfF5/gXtPl0MD D7u0arliOjn7lfPg+u3AAjQDHg0PGDChJUBkbvBBzPMCXBd/tYFzqvj/tLGlKeBC YrtSUzVPuxQrL/UCZr5rBxj8pd8yk3GTkFH2MCntkjkfZbMxt/V09xN7R7G6euqn Al+E68LvWzH0NNQJRCH6Y7o8JUn4vm6mqlV6daEM3jUlJ39JIvisL6NTht6N5aua C1lpcpmP0eAlpvWuAzpbV8bTOrjajvWzFYefE5MWW59vRkCJXfeLnaaRZ53OF0Il gqpN2D1JaftomJB1Rj7UO1Uxx9JsXM5PXuSV2+s+evcS3P2JXyTwfIIdqzq25Zmj 3n14gmuqZve81TwNYrb3HVh8XNeYNHIIXL8tE+O7H+6lJMBuxye7CwAznX6W4ltP 8nL0WlUVRse3NMkvi7VR3u/K+jfPzrhY2n186b7lDIDeQpZinaHZdvrD3rZtvsYJ 4Rr2pB7w0LgLGL1ERuja5+ZjA/h9olFSTgYl4VhqOCXaWJKFTR2PxYNGhg8xf1VL gjMaWC9OA5SB0qPfLzh0 =PHKY -----END PGP SIGNATURE-----