Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Debian Local Security Checks >> [DSA686] DSA-686-1 gftp


Vulnerability Assessment Details

[DSA686] DSA-686-1 gftp

Vulnerability Assessment Summary
DSA-686-1 gftp

Detailed Explanation for this Vulnerability Assessment

Albert Puigsech Galicia discovered a directory traversal vulnerability
in a proprietary FTP client (CVE-2004-1376) which is also present in
gftp, a GTK+ FTP client. A malicious server could provide a specially
crafted filename that could cause arbitrary files to be overwritten or
created by the client.
For the stable distribution (woody) this problem has been fixed in
version 2.0.11-1woody1.
For the unstable distribution (sid) this problem has been fixed in
version 2.0.18-1.
We recommend that you upgrade your gftp package.


Solution : http://www.debian.org/security/2005/dsa-686
Network Security Threat Level: High

Networks Security ID:

Vulnerability Assessment Copyright: This script is (C) 2005 Michel Arboi

Cables, Connectors

SAMSUNG 80GB IDE 2.5" Laptop Hard Disk Drive Used MP0804H/SCC
$15.0
SAMSUNG 80GB IDE 2.5Refurbished Samsung 11.6" Chromebook 3, Chrome, Intel Celeron N3050 Processor, 2
$185.17
Refurbished Samsung 11.63.5mm Super Mini Car Aux Audio Wireless Bluetooth Receiver 4.1 Music Adapter Mic
$12.99
3.5mm Super Mini Car Aux Audio Wireless Bluetooth Receiver 4.1 Music Adapter Mic picture3.5mm Super Mini Car Aux Audio Wireless Bluetooth Receiver 4.1 Music Adapter Mic
$12.99
3.5mm Super Mini Car Aux Audio Wireless Bluetooth Receiver 4.1 Music Adapter Mic picture


Discussions

No Discussions have been posted on this vulnerability.