TITLE: FileZilla / FileZilla Server Multiple Vulnerabilities
SECUNIA ADVISORY ID: SA22094
VERIFY ADVISORY: http://secunia.com/advisories/22094/
CRITICAL: Highly critical
IMPACT: DoS, System access
WHERE: >From remote
SOFTWARE:
FileZilla Server 0.x - http://secunia.com/product/3848/
FileZilla 2.x - http://secunia.com/product/2925/
DESCRIPTION: Some vulnerabilities have been reported in FileZilla and FileZilla Server, which can be exploited by malicious people to cause a DoS (Denial of Service) and compromise a vulnerable system. The vulnerabilities are caused due to the use of a vulnerable OpenSSL version.
For more information: SA22130
SOLUTION:
FileZilla: Update to version 2.2.28.
FileZilla Server: Update to version 0.9.19.
ORIGINAL ADVISORY: http://sourceforge.net/forum/forum.php?forum_id=617485
OTHER REFERENCES: SA22130: http://secunia.com/advisories/22130/
FileZilla / FileZilla Server Multiple VulnerabilitiesPosted on Monday, October 02, 2006 @ 07:18:20 CDT in Security |