[Secure-testing-team] Bug#815879: disables opportunistic TLS

Thomas Goirand zigo at debian.org
Thu Feb 25 09:33:12 UTC 2016


Package: ftpbackup
Version: 0.3-1
Severity: critical
Tags: security

> # remove old archive on the FTP
> lftp -e "set ftp:ssl-allow no; 

Not only this program lets the backups be sent over unencrypted channel, but
it even disables opportunistic TLS.



More information about the Secure-testing-team mailing list