Debian DSA-2283-1 : krb5-appl - programming error
Medium Nessus Plugin ID 55673
SynopsisThe remote Debian host is missing a security-related update.
DescriptionTim Zingelmann discovered that due an incorrect configure script the kerborised FTP server failed to set the effective GID correctly, resulting in privilege escalation.
The oldstable distribution (lenny) is not affected.
SolutionUpgrade the krb5-appl packages.
For the stable distribution (squeeze), this problem has been fixed in version 1.0.1-1.1.