Filezilla security hole in new beta

Problems with the Windows version of XAMPP, questions, comments, and anything related.

Filezilla security hole in new beta

Postby Boogerhead » 17. March 2009 07:31

Kind folks,

I just ran Secunia PSI on an existing XAMPP install, which told me my install of Filezilla server 9.29 was insecure. Came here, saw new beta, downloaded, checked readme, found it came with 9.30. Good. Checked Filezilla site, found this warning:

2009-03-03 - FileZilla Server 0.9.31 releasedBugfixes and minor changes:
Fix buffer overflow in SSL code leading to a potential security vulnerability

I don't know if there's time to integrate the somewhat newer version into another beta or something before it goes out.

On a not-unrelated note: If the English and German readme files could get posted as separate downloads somewhere, that could simplify life (and bandwidth costs).

Thanks for everything!

Mike
Boogerhead
 
Posts: 8
Joined: 29. June 2008 03:56

Re: Filezilla security hole in new beta

Postby Izzy » 17. March 2009 07:43

The XAMPP beta site has a form to give feedback and is found here:
http://www.apachefriends.org/en/xampp-beta.html

Boogerhead wrote:On a not-unrelated note: If the English and German readme files could get posted as separate downloads somewhere...
The readme_en.txt file can be downloaded from the same place you download XAMPP and in Windows it is here:
http://www.apachefriends.org/en/xampp-windows.html
See also README
http://www.apachefriends.org/winxampp/readme_en.txt
Izzy
 
Posts: 3344
Joined: 25. April 2006 17:06

Re: Filezilla security hole in new beta

Postby Boogerhead » 17. March 2009 18:59

Much obliged! Will file the beta feedback.

To get to the readme in the beta version, though, you do still have to download the beta:
http://www.apachefriends.org/en/xampp-beta.html

I'll leave feedback about that as well.

Thanks again!

Mike
Boogerhead
 
Posts: 8
Joined: 29. June 2008 03:56


Return to XAMPP for Windows

Who is online

Users browsing this forum: No registered users and 140 guests