ftpd vulnerability

according to this Changelog of the latest Debian release of heimdal the
ftpd vulnerability as described in
http://archives.neohapsis.com/archives/bugtraq/2004-08/0355.html has
been fixed as of version 0.6.3rc3. I downloaded this version, but I
can't find a changelog entry that references the exact change (the ftp
directory isn't mentioned at all). Can you pinpoint me to the change or
could the Heimdal project release an "official" patch for this

