The author of vsftpd just released a new minor version which "fixes a listener hang/crash which a few sites [those who don't use inetd] see under heavy connect/disconnect load".
rajiv: this needs an ebuild bump to 1.2.2...
I'll work on a GLSA draft for this.
Could we bump it without glsa? :P
It's been found by the CondorDes, jaervosz, and myself that a quick version bump is all that's required. Waiting for solar to commit the new ebuild and all will be good.
Thanks to solar for bumping the ebuild. Arches: Please test net-ftp/vsftpd-1.2.2 and mark stable. Thanks.
Stable on alpha.
Stable on sparc
Stable on x86.
Security : time for a GLSA decision. I would vote for no GLSA on this one.
jaervosz also votes for no GLSA, this is hardly exploitable. CondorDes, this one is yours... If you agree for no GLSA, please close.
Hmmm, it does seem fairly trivial. Closing without GLSA.
stable on ppc64