Community Forums
Connect with us on LinkedIn
+ Reply to Thread
Results 1 to 7 of 7
  1. #1
    Member
    Join Date
    Mar 2004
    Posts
    38

    Default Pure-ftpd bologna vuln

    Don't bother switching. I won't say much, but unless you run mod-sql, don't worry.

  2. #2
    Super Moderator This forum account has been confirmed by cPanel staff to represent a vendor. chirpy's Avatar
    Join Date
    Jun 2002
    Location
    Go on, have a guess
    Posts
    13,495

    Default

    You're going to have to explain yourself some more if you want your post to be intelligible and for anyone to give credence to whatever you are posting about
    Jonathan Michaelson

    Need your cPanel servers secured and tuned?
    cPanel Server Configuration, Security, Recovery and Antivirus/AntiSpam Services
    Developers of the most effective (and free) Firewall & Security Solution for cPanel Servers - csf
    http://www.configserver.com

  3. #3
    Member
    Join Date
    Mar 2004
    Posts
    38

    Default

    Well, I can't say too too much about it. Let's just say that I am a senior member of http://neworder.box.sk. My clients include such people as the guy who generated the entire LMhash database, which cracks any LM encrypted password in a split second, one who found the most recent 'remote command execution' hole in phpbb, as well as those whos only job is to write windows exploits :-) I can't talk about the specifics as I was asked not to, but as long as you don't run proftpd with anything related to sql stored usernames, don't worry :-)

  4. #4
    Member
    Join Date
    Aug 2005
    Posts
    7

    Default

    I can't talk about the specifics as I was asked not to,
    Dont bother to post here to if u cant talk about it
    U help us, then we will help other, thats y we must help each others

    Regards

  5. #5
    Super Moderator This forum account has been confirmed by cPanel staff to represent a vendor. chirpy's Avatar
    Join Date
    Jun 2002
    Location
    Go on, have a guess
    Posts
    13,495

    Default

    Now I'm confused. In your thread title you're talking about pure-ftpd and in your post you're talking about proftpd. Which one is it that apparently has this vulnerability? Also, which specific versions? Do you have a CERT or other advisory link?
    Jonathan Michaelson

    Need your cPanel servers secured and tuned?
    cPanel Server Configuration, Security, Recovery and Antivirus/AntiSpam Services
    Developers of the most effective (and free) Firewall & Security Solution for cPanel Servers - csf
    http://www.configserver.com

  6. #6
    Member
    Join Date
    Mar 2004
    Posts
    38

    Default

    Sorry, I was talking about the bogus 'proftpd' vuln. No, there is no CERT/packetstorm link, but I'd be glad to have a conversation with someone in PM regarding it.

  7. #7
    Super Moderator This forum account has been confirmed by cPanel staff to represent a vendor. chirpy's Avatar
    Join Date
    Jun 2002
    Location
    Go on, have a guess
    Posts
    13,495

    Default

    So how do you know that the issue that cPanel has found relates to MySQL use? I would suggest that you have this discussion with cPanel through security@cpanel.net
    Jonathan Michaelson

    Need your cPanel servers secured and tuned?
    cPanel Server Configuration, Security, Recovery and Antivirus/AntiSpam Services
    Developers of the most effective (and free) Firewall & Security Solution for cPanel Servers - csf
    http://www.configserver.com

Similar Threads & Tags
Similar threads

  1. Pure-Ftpd
    By mickalo in forum cPanel and WHM Discussions
    Replies: 0
    Last Post: 03-10-2006, 05:46 AM
  2. Anyone know where to get pure-ftpd ???
    By nyjimbo in forum cPanel and WHM Discussions
    Replies: 1
    Last Post: 02-23-2006, 01:17 PM
  3. Site to Site Transfer Failed! Pure-ftpd/Pro-ftpd
    By yeahbaby in forum cPanel and WHM Discussions
    Replies: 0
    Last Post: 02-08-2005, 12:31 PM
  4. Pure FTPD
    By Seal in forum cPanel and WHM Discussions
    Replies: 0
    Last Post: 08-17-2004, 10:25 PM
  5. pure-ftpd
    By aliensid in forum cPanel and WHM Discussions
    Replies: 1
    Last Post: 04-26-2004, 01:41 PM
Linkedin       Facebook       Twitter       RSS       Flickr       YouTube