We have found that the ftpwatch package as distributed in Debian GNU/Linux 1.3 and later distributions has a security problem which makes it trivial for users to gain root access. We recommend that you remove the ftpwatch package immediately. We will be working on a new version of ftpwatch to address these issues and will announce that in a new advisory. - -- Debian GNU/Linux . Security Managers . [email protected] [email protected] Christian Hudon . Wichert Akkerman . Martin Schulze. .