Not a good time for administrators at the moment. First the multiple holes in OpenSSH, now ProFTPd. Fortunately, Debian works quite pragmatically and delivers the patches relatively quickly - although I'm still waiting for the ProFTPd patch there (and the latest ssh patch isn't here yet either - and that's not entirely uncritical, since Debian works with PAM support).

At heise online news there's the original article.