Back to search
CVE-2005-0256
Published: Feb 25, 2005
Modified: Aug 7, 2024
PUBLISHED
Description
The wu_fnmatch function in wu_fnmatch.c in wu-ftpd 2.6.1 and 2.6.2 allows remote attackers to cause a denial of service (CPU exhaustion by recursion) via a glob pattern with a large number of * (wildcard) characters, as demonstrated using the dir command.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
DSA-705
vendor-advisory
x_refsource_DEBIAN
18210
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:1762
vdb-entry
signature
x_refsource_OVAL
ADV-2006-1271
vdb-entry
x_refsource_VUPEN
ADV-2005-0588
vdb-entry
x_refsource_VUPEN
57795
vendor-advisory
x_refsource_SUNALERT
14411
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:1265
vdb-entry
signature
x_refsource_OVAL
HPSBUX02110
vendor-advisory
x_refsource_HP
101699
vendor-advisory
x_refsource_SUNALERT
19561
third-party-advisory
x_refsource_SECUNIA
SSRT061110
vendor-advisory
x_refsource_HP
20050225 WU-FTPD File Globbing Denial of Service Vulnerability
third-party-advisory
x_refsource_IDEFENSE
oval:org.mitre.oval:def:1333
vdb-entry
signature
x_refsource_OVAL
14203
vdb-entry
x_refsource_OSVDB
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now