GlobalSCAPE Secure FTP Server Remote Denial of Service Vulnerability
BID:17398
Info
GlobalSCAPE Secure FTP Server Remote Denial of Service Vulnerability
| Bugtraq ID: | 17398 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 06 2006 12:00AM |
| Updated: | Apr 07 2006 07:58PM |
| Credit: | The vendor disclosed this issue. |
| Vulnerable: |
globalSCAPE Secure FTP Server 3.1.3 Build 10.10.2005 globalSCAPE Secure FTP Server 3.1.1 Build 08.08.2005.2 globalSCAPE Secure FTP Server 3.0.4 Build 6.15.2005 globalSCAPE Secure FTP Server 3.0.3 Build 4.29.2005 globalSCAPE Secure FTP Server 3.0.2 Build 04.12.2005.1 globalSCAPE Secure FTP Server 3.0 globalSCAPE Secure FTP Server 2.0 Build 03.16.2004.1 globalSCAPE Secure FTP Server 2.0 Build 03.11.2004.2 globalSCAPE Secure FTP Server 3.1 Build 7.06.2005. |
| Not Vulnerable: |
globalSCAPE Secure FTP Server 3.1.4 Build 01.10.2006 |
Discussion
GlobalSCAPE Secure FTP Server Remote Denial of Service Vulnerability
GlobalSCAPE Secure FTP Server is susceptible to a remote denial-of-service vulnerability. This issue is due to the application's failure to properly handle unexpected input.
This vulnerability allows remote attackers to crash affected servers, denying service to legitimate users.
Versions of Secure FTP Server prior to 3.1.4 Build 01.10.2006 are affected by this issue.
GlobalSCAPE Secure FTP Server is susceptible to a remote denial-of-service vulnerability. This issue is due to the application's failure to properly handle unexpected input.
This vulnerability allows remote attackers to crash affected servers, denying service to legitimate users.
Versions of Secure FTP Server prior to 3.1.4 Build 01.10.2006 are affected by this issue.
Exploit / POC
GlobalSCAPE Secure FTP Server Remote Denial of Service Vulnerability
Attackers likely use a standard FTP client package or other readily available network utilities to exploit this issue.
Attackers likely use a standard FTP client package or other readily available network utilities to exploit this issue.
Solution / Fix
GlobalSCAPE Secure FTP Server Remote Denial of Service Vulnerability
Solution:
This issue is addressed in Secure FTP Server 3.1.4 Build 01.10.2006.
globalSCAPE Secure FTP Server 3.1 Build 7.06.2005.
globalSCAPE Secure FTP Server 2.0 Build 03.16.2004.1
globalSCAPE Secure FTP Server 2.0 Build 03.11.2004.2
globalSCAPE Secure FTP Server 3.0
globalSCAPE Secure FTP Server 3.0.2 Build 04.12.2005.1
globalSCAPE Secure FTP Server 3.0.3 Build 4.29.2005
globalSCAPE Secure FTP Server 3.0.4 Build 6.15.2005
globalSCAPE Secure FTP Server 3.1.1 Build 08.08.2005.2
globalSCAPE Secure FTP Server 3.1.3 Build 10.10.2005
Solution:
This issue is addressed in Secure FTP Server 3.1.4 Build 01.10.2006.
globalSCAPE Secure FTP Server 3.1 Build 7.06.2005.
-
globalSCAPE Secure FTP Server Latest Version Download
ftp://ftp.globalscape.com/pub/gsftps/gsftps.exe
globalSCAPE Secure FTP Server 2.0 Build 03.16.2004.1
-
globalSCAPE Secure FTP Server Latest Version Download
ftp://ftp.globalscape.com/pub/gsftps/gsftps.exe
globalSCAPE Secure FTP Server 2.0 Build 03.11.2004.2
-
globalSCAPE Secure FTP Server Latest Version Download
ftp://ftp.globalscape.com/pub/gsftps/gsftps.exe
globalSCAPE Secure FTP Server 3.0
-
globalSCAPE Secure FTP Server Latest Version Download
ftp://ftp.globalscape.com/pub/gsftps/gsftps.exe
globalSCAPE Secure FTP Server 3.0.2 Build 04.12.2005.1
-
globalSCAPE Secure FTP Server Latest Version Download
ftp://ftp.globalscape.com/pub/gsftps/gsftps.exe
globalSCAPE Secure FTP Server 3.0.3 Build 4.29.2005
-
globalSCAPE Secure FTP Server Latest Version Download
ftp://ftp.globalscape.com/pub/gsftps/gsftps.exe
globalSCAPE Secure FTP Server 3.0.4 Build 6.15.2005
-
globalSCAPE Secure FTP Server Latest Version Download
ftp://ftp.globalscape.com/pub/gsftps/gsftps.exe
globalSCAPE Secure FTP Server 3.1.1 Build 08.08.2005.2
-
globalSCAPE Secure FTP Server Latest Version Download
ftp://ftp.globalscape.com/pub/gsftps/gsftps.exe
globalSCAPE Secure FTP Server 3.1.3 Build 10.10.2005
-
globalSCAPE Secure FTP Server Latest Version Download
ftp://ftp.globalscape.com/pub/gsftps/gsftps.exe
References
GlobalSCAPE Secure FTP Server Remote Denial of Service Vulnerability
References:
References:
- Golden FTP Server Home Page (KMiNT21 Software)
- Secure FTP Server Version History (globalSCAPE)