|
Message-ID: <20110804191323.GB41331@dojo.mi.org>
Date: Thu, 4 Aug 2011 15:13:24 -0400
From: "Mike O'Connor" <mjo@...o.mi.org>
To: oss-security@...ts.openwall.com
Subject: Re: CVE-request: FreeBSD/NetBSD/OpenBSD(?) ftpd remote crash (2010)
:Can I get 2010 CVE-ID for this issue? I am not sure if other distributions/operating systems need their own IDs. If I am correct one ID should be enough.
:
:Original discussion: http://seclists.org/fulldisclosure/2010/Mar/117
:Bug report to FreeBSD: http://www.freebsd.org/cgi/query-pr.cgi?pr=144761
:NetBSD: http://www.netbsd.org/cgi-bin/query-pr-single.pl?number=43023
:Reported to OpenBSD (and patched), but can't find references.
FWIW, a reference for OpenBSD is:
ftp://ftp.openbsd.org/pub/OpenBSD/patches/4.5/common/013_ftpd.patch
--
Michael J. O'Connor mjo@...o.mi.org
=--==--==--==--==--==--==--==--==--==--==--==--==--==--==--==--==--==--==--=
"All my autopsies have been performed on dead people." -Anguished English
Content of type "application/pgp-signature" skipped
Powered by blists - more mailing lists
Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.
Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.