-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 02 Mar 2025 11:00:29 +0000 Source: proftpd-dfsg Architecture: source Version: 1.3.7a+dfsg-12+deb11u5 Distribution: bullseye-security Urgency: high Maintainer: ProFTPD Maintainance Team <pkg-proftpd-maintainers@alioth-lists.debian.net> Changed-By: Bastien Roucariès <rouca@debian.org> Changes: proftpd-dfsg (1.3.7a+dfsg-12+deb11u5) bullseye-security; urgency=high . * LTS Team upload * Add autopkgtest suite. * Fix issue #1171 patch * Fix CVE-2024-57392: A Buffer Overflow vulnerability in Proftpd allowed a remote attacker to execute arbitrary code and can cause a Denial of Service (DoS) on the FTP service by sending a maliciously crafted message to the ProFTPD service port. * Bug Fix: Blastradius fix breakage. Fix the computation of the RADIUS Message-Authenticator signature to conform more properly to RFC 2869 Checksums-Sha1: 4ce218b21b141ebede9829f1dcd00f3c6d43abca 3317 proftpd-dfsg_1.3.7a+dfsg-12+deb11u5.dsc e6a02a44166bd36548a5132c41f3fb4270b33c95 20276614 proftpd-dfsg_1.3.7a+dfsg.orig.tar.gz 48318a29e6cc55162c7e7aceb3bc781a559eb6e1 96332 proftpd-dfsg_1.3.7a+dfsg-12+deb11u5.debian.tar.xz 9546de12e9c2620921570c4cd33d09125d44f592 15608 proftpd-dfsg_1.3.7a+dfsg-12+deb11u5_amd64.buildinfo Checksums-Sha256: 7f17618087c28457cb5fc75244c23dfd3b6954515f4c2071ce518cc41c8a5d96 3317 proftpd-dfsg_1.3.7a+dfsg-12+deb11u5.dsc 572ad47ba7a5b6f39bb3ef293b6361c01daa0d25ed463dace15a7d5a9649c15f 20276614 proftpd-dfsg_1.3.7a+dfsg.orig.tar.gz c96dcc3f0d84f1727fbc161155231c36fbba2ad710270660e7879d4e1cbad3b6 96332 proftpd-dfsg_1.3.7a+dfsg-12+deb11u5.debian.tar.xz f7e0dcc83876259d3a904d0382484a408d98dd6fc10f762a63514eeb60a1143a 15608 proftpd-dfsg_1.3.7a+dfsg-12+deb11u5_amd64.buildinfo Files: d4d504a31701dd82988bebfffa9f1055 3317 net optional proftpd-dfsg_1.3.7a+dfsg-12+deb11u5.dsc 91ccc20e0ca76218699a5b256358e945 20276614 net optional proftpd-dfsg_1.3.7a+dfsg.orig.tar.gz a8ec1a30dac0d42857c9d7a3cb2d72d4 96332 net optional proftpd-dfsg_1.3.7a+dfsg-12+deb11u5.debian.tar.xz e9fb4de33186e2a65d7f3258799371c8 15608 net optional proftpd-dfsg_1.3.7a+dfsg-12+deb11u5_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEXQGHuUCiRbrXsPVqADoaLapBCF8FAmfEoocACgkQADoaLapB CF/l6w//earmsEMcxIzjEpIrHtIhz+b1RM+uNZVIChxvg97AlU5hmmejkiHPpYN+ /9NO9FnbZKBAxK8rUOWIhl+DOMkp3kNXPk/IjV94E1u1isZhwIBEv4WK+t/9t814 UytyZfHKgxs8CiyFwVVHTT5WWCbPp4XeA9nKV2Ygfo6RPm0HB5h5ILFdjfSab77e E9z6b6VDJkWxavDPw5kSrLkh0J7GhDKed9YDYN5ujWPuGGHyvhNSbpgDy6Yz13b8 2qHK3gQRcYUB9tww7H6+Z8AE1o6+PvBvgXZwXTw6XWe0llxU+kY51KWnn8CRsNpn iiiI2t5tH5g4VKAhZFPqlKb3+JMoeurZi4Q1OlSrIdB2eRRCMr0i80D/5k3Rh1dA 4OqrNlZDdPl+KFda5aj7lAj1rvPVgHwUKI2o8VQpng71BKh5Sq69c2T0zXN/wjXA yvDe7yDt9s9A7h3KrYDkdhl1m4oQS8BPW58zMDpDklIombETGJMAaNEZNeG3BQeH rNrIHj1zGQjbqwC9Ci8wZ9FEjSm7pdd3ICffQv42uDpKmuIjq5mSPj35X7xbaXpI fh9PRqOIYdf4AhnehWsWrYZGQ3C+oDNuCXYMwcRgCgfUlN4QmaOfdzARvsX+NpCn shtzE6KxwyqHZ+bSVsXrwqZR5rm4e48ROJ2KGbsMeT6liQQAtAQ= =psII -----END PGP SIGNATURE-----