Article Source Fedora 10 Security Updates
November 18, 2009, 5:32 am
November 18, 2009, 5:32 am
Resolved Bugs
537899 – CVE-2009-3639 ProFTPD: Doesn’t properly handle NULL character in subjectAltName [Fedora 10]
530719 – CVE-2009-3639 ProFTPD: Doesn’t properly handle NULL character in subjectAltName
This update fixes CVE-2009-3639, in which proftpd’s mod_tls, when the dNSNameRequired TLS option is enabled, does not properly handle a ‘