(Fwd) SECURITY: new wu-ftpd packages available

Stephen Adler (adler@ssadler.phy.bnl.gov)
Wed, 10 Feb 1999 12:27:16 +0000

Redhat has released a security advisory regarding wu-ftpd. A
new .rpm package is now available which can be found on the
BNL RedHat mirror site. I advise all sysadmins of RedHat linux
systems to execute the following command as root

rpm -Uvh \
ftp://phyppro1.phy.bnl.gov/pub/mirror/redhat-main/redhat/updates/5.2/i386/wu-ftpd-2.4.2b18-2.1.i386.rpm

What follows is a copy of the RedHat security alert.

If you do not install this patch, your system will be compromised....

Steve.

--- Forwarded mail from redhat-watch-list@redhat.com

Resent-Date: 9 Feb 1999 22:56:28 -0000
Resent-Cc: recipient list not shown: ;
Date: Tue, 9 Feb 1999 17:34:10 -0500
From: Bill Nottingham <notting@redhat.com>
To: redhat-watch-list@redhat.com
Subject: SECURITY: new wu-ftpd packages available
Resent-From: redhat-watch-list@redhat.com
Reply-To: redhat-watch-list@redhat.com

A security vulnerability has been identified in all versions of the wu-ftpd
server binary shipped with Red Hat Linux. For more information, see
http://www.netect.com/advisory_0209.html

New packages are available for Red Hat Linux 4.2, 5.0, 5.1, and 5.2. All
users of Red Hat Linux are encouraged to upgrade to the new wu-ftpd releases
immediately. As always, these packages have been signed with the Red Hat PGP
key.

Bill

Red Hat Linux 5.0,5.1,5.2:
==================

alpha:
rpm -Uvh ftp://updates.redhat.com/5.2/alpha/wu-ftpd-2.4.2b18-2.1.alpha.rpm

i386:
rpm -Uvh ftp://updates.redhat.com/5.2/i386/wu-ftpd-2.4.2b18-2.1.i386.rpm

sparc:
rpm -Uvh ftp://updates.redhat.com/5.2/sparc/wu-ftpd-2.4.2b18-2.1.sparc.rpm

Source rpm:
rpm -Uvh ftp://updates.redhat.com/5.2/SRPMS/wu-ftpd-2.4.2b18-2.1.src.rpm

Red Hat Linux 4.2:
==================

alpha:
rpm -Uvh ftp://updates.redhat.com/4.2/alpha/wu-ftpd-2.4.2b15-1.2.alpha.rpm

i386:
rpm -Uvh ftp://updates.redhat.com/4.2/i386/wu-ftpd-2.4.2b15-1.2.i386.rpm

sparc:
rpm -Uvh ftp://updates.redhat.com/4.2/sparc/wu-ftpd-2.4.2b15-1.2.sparc.rpm

Source rpm:
rpm -Uvh ftp://updates.redhat.com/4.2/SRPMS/wu-ftpd-2.4.2b15-1.2.src.rpm

--
         To unsubscribe: mail redhat-watch-list-request@redhat.com with
                       "unsubscribe" as the Subject.

--
To unsubscribe:
mail -s unsubscribe redhat-announce-list-request@redhat.com < /dev/null

---End of forwarded mail from redhat-watch-list@redhat.com