GuildFTPD Remote Denial of Service Vulnerability
BID:2784
Info
GuildFTPD Remote Denial of Service Vulnerability
| Bugtraq ID: | 2784 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 22 2001 12:00AM |
| Updated: | May 22 2001 12:00AM |
| Credit: | Reported to Bugtraq in a Defcom Labs Advisory on May 22, 2001. |
| Vulnerable: |
DrPhibez and Nitro187 Guild FTPD 0.9.7 |
| Not Vulnerable: | |
Discussion
GuildFTPD Remote Denial of Service Vulnerability
GuildFTPD is a free Windows-based program used primarily as a personal ftp server.
A vulnerability exists in GuildFTPD which could allow a remote attacker to cause a denial of service attack. By sending requests containg NUL bytes ('\0'), it may be possible for an attacker to cause a memory leak, eventually causing the server to be unresponsive after repeated attacks.
GuildFTPD is a free Windows-based program used primarily as a personal ftp server.
A vulnerability exists in GuildFTPD which could allow a remote attacker to cause a denial of service attack. By sending requests containg NUL bytes ('\0'), it may be possible for an attacker to cause a memory leak, eventually causing the server to be unresponsive after repeated attacks.
Exploit / POC
GuildFTPD Remote Denial of Service Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.