=====================================================================
                                    CERT-Renater

                         Note d'Information No. 2011/VULN173
_____________________________________________________________________

DATE                      : 02/03/2011

HARDWARE PLATFORM(S)      : /

OPERATING SYSTEM(S)       : Systems running vsftpd version prior to 2.3.4.

======================================================================
http://vsftpd.beasts.org/
______________________________________________________________________

Feb 2011 - vsftpd-2.3.4 released

     * vsftpd-2.3.4 is released - aside from some minor changes, the
most interesting bug fix is an excessive CPU consumption issue with
crazy file specs. Credit to Maksymilian Arciemowicz. See the Changelog
and vsftpd FAQ (frequently asked questions) for a list of common
questions!

     * After numerous requests, I now have a PayPal button for donations.
If you use vsftpd, like it, and think it's worthy of a donation, then click
on the Paypal button on the left of the page.

     * ftp.freebsd.org switched to vsftpd.
     * vsftpd tarballs are now GPG signed by me.


======================================================================

           =========================================================
           Les serveurs de référence du CERT-Renater
           http://www.urec.fr/securite
           http://www.cru.fr/securite
           http://www.renater.fr
           =========================================================
           + CERT-RENATER          | tel : 01-53-94-20-44          +
           + 23 - 25 Rue Daviel    | fax : 01-53-94-20-41          +
           + 75013 Paris           | email: certsvp@renater.fr     +
           =========================================================

