On Fri, Oct 12, 2007 at 11:31:04AM +0200, Fabio Tranchitella wrote: > Package: proftpd-dfsg > Version: 1.3.0-19 > Severity: grave > Tags: security > > Hi, > > according to the proftpd home page, version 1.3.0 is affected by a > security issue with CVE id CVE-2006-5815. > > Upstream released 1.3.0a to address the security hole, which is suitable > for the stable release. > > For unstable, it is probably better to upload 1.3.1, released one week > ago. > > Thanks,
Did you see that CVE-2006-5815 is closed since 1.3.0-15? Have you information against that? See http://bugs.debian.org/399070 for reference. -- Francesco P. Lovergine -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]