ELSA-2010-0585

ELSA-2010-0585 - lftp security update

Type:SECURITY
Severity:MODERATE
Release Date:2010-08-02

Description



[3.7.11-4.el5_5.3]
- Related: CVE-2010-2251 - document change of xfer:clobber default
value in manpage, respect xfer:clobber on with xfer:auto-rename on
(old behaviour)

[3.7.11-4.el5_5.2]
- Related: CVE-2010-2251 - describe new option xfer:auto-rename
which could restore old behaviour in manpage

[3.7.11-4.el5_5.1]
- Resolves: CVE-2010-2251 - multiple HTTP client download filename
vulnerability (#617870)


Related CVEs


CVE-2010-2251

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 5 (i386) lftp-3.7.11-4.el5_5.3.src.rpm45d9b67643f8bc31bc340bd6a1ea8648ELBA-2018-1882
lftp-3.7.11-4.el5_5.3.i386.rpm4e6ef108706d5123e22864ba58b732cdELBA-2018-1882
Oracle Linux 5 (ia64) lftp-3.7.11-4.el5_5.3.src.rpm45d9b67643f8bc31bc340bd6a1ea8648ELBA-2018-1882
lftp-3.7.11-4.el5_5.3.ia64.rpmfc3ee8431d9c25e608fe17df01096efdELBA-2018-1882
Oracle Linux 5 (x86_64) lftp-3.7.11-4.el5_5.3.src.rpm45d9b67643f8bc31bc340bd6a1ea8648ELBA-2018-1882
lftp-3.7.11-4.el5_5.3.x86_64.rpm82395e1821ce54ae31228a1dda88f13fELBA-2018-1882



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete