Bug Fix Advisory vsftpd bug fix update

Advisory: RHBA-2009:0985-1
Type: Bug Fix Advisory
Severity: N/A
Issued on: 2009-05-18
Last updated on: 2009-05-18
Affected Products: Red Hat Enterprise Linux AS (v. 4)
Red Hat Enterprise Linux ES (v. 4)
OVAL: N/A

Details

An updated vsftpd package that fixes various bugs is now available.

The vsftpd package includes a Very Secure FTP (File Transfer Protocol) daemon.

This updated vsftpd package includes fixes for the following bugs:

* the default value for the location of xferlog_file in the vsftpd.conf
configuration file did not agree with the one stated in the vsftpd.conf(5)
man page. Also, the configuration of logrotate for the vsftpd.conf log
files did not agree with the log file specification. With this update, the
locations of log files are better specified and logrotate rotates the
correct log files. In addition, descriptions in the vsftpd.conf
configuration file have been improved.

* using more than one '*' wildcard (or "globbing") character at vsftpd's
ftp prompt when using the "ls" command to list a directory's contents did
not behave as expected. This update restores the behavior of the '*'
wildcard character so that it matches correctly, thus resolving the issue.

* the vsftpd init script displayed a superfluous "binary operator expected"
message. The syntax error which caused these messages has been corrected in
this update, and the message no longer appears.

All users of vsftpd are advised to upgrade to this updated package, which
resolves these issues.


Solution

Before applying this update, make sure that all previously-released
errata relevant to your system have been applied.

This update is available via Red Hat Network. Details on how to use
the Red Hat Network to apply this update are available at
http://kbase.redhat.com/faq/docs/DOC-11259

Updated packages

Red Hat Enterprise Linux AS (v. 4)

SRPMS:
vsftpd-2.0.1-8.el4.src.rpm     5eefb1477ebea1ea37fe7577ed95d688
 
IA-32:
vsftpd-2.0.1-8.el4.i386.rpm     2d4ebcd8c9845ea5726c2842ace176a3
 
IA-64:
vsftpd-2.0.1-8.el4.ia64.rpm     35256f6c913957edf02682b14ad614ae
 
PPC:
vsftpd-2.0.1-8.el4.ppc.rpm     7d18cfcb97103010cfbbb5ebf4f55987
 
s390:
vsftpd-2.0.1-8.el4.s390.rpm     f03cd751451fbfd0cf53ab9618e66030
 
s390x:
vsftpd-2.0.1-8.el4.s390x.rpm     5179f5c7a3a9b7c266b27c8c42f20cfa
 
x86_64:
vsftpd-2.0.1-8.el4.x86_64.rpm     ee89dbc921679c1c157e9e1e8fe1833e
 
Red Hat Enterprise Linux ES (v. 4)

SRPMS:
vsftpd-2.0.1-8.el4.src.rpm     5eefb1477ebea1ea37fe7577ed95d688
 
IA-32:
vsftpd-2.0.1-8.el4.i386.rpm     2d4ebcd8c9845ea5726c2842ace176a3
 
IA-64:
vsftpd-2.0.1-8.el4.ia64.rpm     35256f6c913957edf02682b14ad614ae
 
x86_64:
vsftpd-2.0.1-8.el4.x86_64.rpm     ee89dbc921679c1c157e9e1e8fe1833e
 
(The unlinked packages above are only available from the Red Hat Network)

Bugs fixed (see bugzilla for more information)

465216 - 'binary operator expected' occurs in viartual hosting vsftpd



These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/