This version fixes ddsnoop-related crashes, a few potential buffer overflows, and the symlink vulnerability in the uploaded checker. The telnet daemon has been fixed to accept connections from Amiga clients. The permission problems in the FTP daemon, ddwho, and ddftpwho are fixed. Disabling the idle timeout on local nodes works again. Some minor aesthetic fixes are also included.
More secure archive validity checking, dropping privileges as soon as possible, restricting access to "$" command to SysOp only, an armoring script to setup permissions and ownerships on installed files and directories, and some minor bugfixes unrelated to security.
Fixes for a few buffer overflow vulnerabilities for a number of output control codes, a fix for the typo in tosser's sources, and a fix for disabling multiple logins.