Closing per note in our CVE tracker. If this is incorrect, please
reopen:
stefanlsd> After discussion with Francesco Paolo Lovergine <[email protected]>
we concluded that this bug does not affect the Debian or Ubuntu versions of
proftpd 1.3.1 or earlier. We believe the problems that this CVE affects were
only
introduced in the proftpd 1.3.2rc series. The exploit as found in the Bugs
section
was independently tested and shown to not apply.
** Changed in: proftpd-dfsg (Ubuntu)
Status: Confirmed => Invalid
--
ProFTPD in Hardy vulnerable to CVE-2008-4242
https://bugs.launchpad.net/bugs/310949
You received this bug notification because you are a member of Ubuntu
Bugs, which is a direct subscriber.
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
--
universe-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/universe-bugs