Red Hat Inc. Information for VU#258721
Various FTP clients fail to account for pipe (|) characters in default file names
- Vendor Information Help Date Notified: 16 Jan 2003
- Statement Date:
- Date Updated: 03 Feb 2003
Red Hat has audited the various ftp clients distributed as part of Red Hat Linux. The ftp client that ships as part of the Kerberos 5 packages (krb5-workstation) is vulnerable to these issues. Updated packages are now available along with our advisory at the URL below. Users of Red Hat can update their systems using the 'up2date' tool.
The vendor has not provided us with any further information regarding this vulnerability.
The CERT/CC has no additional comments at this time.