Bug#446192: CVE-2007-5300 possible arbitrary code execution

2007-10-12 Thread Pierre Chifflier
On Thu, Oct 11, 2007 at 01:27:17AM +0200, Nico Golde wrote: > Package: wzdftpd > Version: 0.5.2-1.1sarge2 > Severity: grave > Tags: security > > Hi, > the following CVE (Common Vulnerabilities & Exposures) id was > published for wzdftpd. > > CVE-2007-5300[0]: > | Off-by-one error in the do_login_

Bug#446192: CVE-2007-5300 possible arbitrary code execution

2007-10-10 Thread Nico Golde
Package: wzdftpd Version: 0.5.2-1.1sarge2 Severity: grave Tags: security Hi, the following CVE (Common Vulnerabilities & Exposures) id was published for wzdftpd. CVE-2007-5300[0]: | Off-by-one error in the do_login_loop function in | libwzd-core/wzd_login.c in wzdftpd 0.8.2 and earlier allows rem