Back to search
CVE-2009-0362
Published: Feb 13, 2009
Modified: Sep 16, 2024
PUBLISHED
Description
filter.d/wuftpd.conf in Fail2ban 0.8.3 uses an incorrect regular expression that allows remote attackers to cause a denial of service (forced authentication failures) via a crafted reverse-resolved DNS name (rhost) entry that contains a substring that is interpreted as an IP address, a different vulnerability than CVE-2007-4321.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
33890
third-party-advisory
x_refsource_SECUNIA
33734
vdb-entry
x_refsource_BID
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=514163
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now