Bug Fix Advisory vsftpd bug fix update

Advisory: RHBA-2008:1012-5
Type: Bug Fix Advisory
Severity: N/A
Issued on: 2009-05-18
Last updated on: 2009-05-18
Affected Products: Red Hat Enterprise Linux AS (v. 4)
Red Hat Enterprise Linux ES (v. 4)
OVAL: N/A

Details

An updated vsftpd package that fixes a bug is now available.

The vsftpd package includes a Very Secure FTP (File Transfer Protocol) daemon.

This updated vsftpd package fixes a bug in which the vsftpd daemon did not
properly shut down SSL (Secure Socket Layer) data connections, which led to
interoperability problems between vsftpd daemon and client programs such as
FileZilla. This has been fixed in this updated package so that vsftpd no
longer causes problems with client applications.

All users of vsftpd are advised to upgrade to this updated package, which
resolves this issue.


Solution

Before applying this update, make sure that all previously-released errata
relevant to your system have been applied.

This update is available via Red Hat Network. Details on how to use the Red
Hat Network to apply this update are available at
http://kbase.redhat.com/faq/docs/DOC-11259

Updated packages

Red Hat Enterprise Linux AS (v. 4)

SRPMS:
vsftpd-2.0.1-7.el4.src.rpm
File outdated by:  RHBA-2009:0985
    18acecefed674fc554bd86d170d44c0c
 
IA-32:
vsftpd-2.0.1-7.el4.i386.rpm
File outdated by:  RHBA-2009:0985
    c5f8cae2b3aa6d455f3314acb40a2007
 
IA-64:
vsftpd-2.0.1-7.el4.ia64.rpm
File outdated by:  RHBA-2009:0985
    88b3b8d906d42d3a7233ac30a6c54cb7
 
PPC:
vsftpd-2.0.1-7.el4.ppc.rpm
File outdated by:  RHBA-2009:0985
    c2f3ad3808cc2a112ddb837b272aab81
 
s390:
vsftpd-2.0.1-7.el4.s390.rpm
File outdated by:  RHBA-2009:0985
    ad452b81f7e8be054aa37b468a2b61aa
 
s390x:
vsftpd-2.0.1-7.el4.s390x.rpm
File outdated by:  RHBA-2009:0985
    5d7b01677eee23794530abba414173fe
 
x86_64:
vsftpd-2.0.1-7.el4.x86_64.rpm
File outdated by:  RHBA-2009:0985
    8272f277fd93c37c6a5b90cd35e1736b
 
Red Hat Enterprise Linux ES (v. 4)

SRPMS:
vsftpd-2.0.1-7.el4.src.rpm
File outdated by:  RHBA-2009:0985
    18acecefed674fc554bd86d170d44c0c
 
IA-32:
vsftpd-2.0.1-7.el4.i386.rpm
File outdated by:  RHBA-2009:0985
    c5f8cae2b3aa6d455f3314acb40a2007
 
IA-64:
vsftpd-2.0.1-7.el4.ia64.rpm
File outdated by:  RHBA-2009:0985
    88b3b8d906d42d3a7233ac30a6c54cb7
 
x86_64:
vsftpd-2.0.1-7.el4.x86_64.rpm
File outdated by:  RHBA-2009:0985
    8272f277fd93c37c6a5b90cd35e1736b
 
(The unlinked packages above are only available from the Red Hat Network)

Bugs fixed (see bugzilla for more information)

462018 - SSL connections are not correctly shutdown



These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/