OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: [suse-security] strange ftp-scan
From: Kurt Seifried (listuserseifried.org)
Date: Sat Oct 07 2000 - 05:16:20 CDT


> > WuFTPD has more security holes then a .... well actually it's in my top
10
> > for "most insecure software ever written and maintained". There are
> > _several_ root hacks for it in this year alone. I wouldn't use WuFTPD if
> > someone had a gun to my head.
>
> Ok, I used it only because of Thomas' letter in june
> (http://lists.suse.com/archives/suse-security/2000-Jun/0167.html)...

That was before the whole format string thing, I;m not sure they checked for
format strings back then, doubt it.

-Kurt

---------------------------------------------------------------------
To unsubscribe, e-mail: suse-security-unsubscribesuse.com
For additional commands, e-mail: suse-security-helpsuse.com