atftpd vulnerability and patch?

2003-06-11 Thread Drew Scott Daniels
http://packetstorm.linuxsecurity.com/filedesc/atftpdx.c.html says: Proof of concept remote root exploit for atftpd version 0.6. Makes use of the filename overflow found by Rick Patel. Related post here. Tested against Debian 3.0. By gunzip http://packetstorm.linuxsecurity.com/filedesc/atftpd.patch

atftpd vulnerability and patch?

2003-06-11 Thread Drew Scott Daniels
http://packetstorm.linuxsecurity.com/filedesc/atftpdx.c.html says: Proof of concept remote root exploit for atftpd version 0.6. Makes use of the filename overflow found by Rick Patel. Related post here. Tested against Debian 3.0. By gunzip http://packetstorm.linuxsecurity.com/filedesc/atftpd.patch