Vulnerability Name: | CVE-2001-0136 (CCN-5801) | ||||||||
Assigned: | 2000-12-19 | ||||||||
Published: | 2000-12-19 | ||||||||
Updated: | 2018-02-07 | ||||||||
Summary: | Memory leak in ProFTPd 1.2.0rc2 allows remote attackers to cause a denial of service via a series of USER commands, and possibly SIZE commands if the server has been improperly installed. | ||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P)
| ||||||||
Vulnerability Type: | CWE-399 | ||||||||
Vulnerability Consequences: | Denial of Service | ||||||||
References: | Source: CCN Type: BugTraq Mailing List, Tue Dec 19 2000 - 07:58:03 CST Memory leakage in proftpd leads to remote DoS Source: CCN Type: BugTraq Mailing List, Wed Dec 20 2000 - 09:38:54 CST ProFTPD 1.2.0 Memory leakage - denial of service Source: BUGTRAQ Type: Exploit, Vendor Advisory 20010109 Memory leakage in ProFTPd leads to remote DoS (SIZE FTP); (Exploit Code) Source: BUGTRAQ Type: Broken Link 20010110 Re: Memory leakage in ProFTPd leads to remote DoS (SIZE FTP); (Exploit Code) Source: CCN Type: BugTraq Mailing List, Tue Feb 06 2001 - 19:17:33 CST Response to ProFTPD issues Source: CCN Type: Conectiva Linux Announcement CLSA-2001:380 proftpd Source: BUGTRAQ Type: Broken Link 20010213 Trustix Security Advisory - proftpd, kernel Source: CCN Type: Trustix Secure Linux Security Advisory 2/14/2001 proftpd, kernel Source: MITRE Type: CNA CVE-2001-0136 Source: CONECTIVA Type: Broken Link CLA-2001:380 Source: DEBIAN Type: Third Party Advisory DSA-029 Source: DEBIAN Type: DSA-029 proftpd -- remote DOS & potential buffer overflow Source: MANDRAKE Type: Broken Link MDKSA-2001:021 Source: CCN Type: OSVDB ID: 7165 ProFTPD USER Command Memory Leak DoS Source: CCN Type: OSVDB ID: 7166 ProFTPD SIZE Command Memory Leak DoS Source: CCN Type: ProFTPD Web site ProFTPD Project: Downloading and Mirror sites Source: BUGTRAQ Type: Exploit, Third Party Advisory, VDB Entry 20001220 ProFTPD 1.2.0 Memory leakage - denial of service Source: CCN Type: BID-2185 ProFTPD SIZE Remote Denial of Service Vulnerability Source: CCN Type: BID-2366 ProFTPD USER Remote Denial of Service Vulnerability Source: CCN Type: MandrakeSoft Security Advisory MDKSA-2001:021 proftpd Source: XF Type: Third Party Advisory, VDB Entry proftpd-size-memory-leak(5801) Source: XF Type: UNKNOWN proftpd-size-memory-leak(5801) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration 2: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |