Back to search
CVE-2019-18217
Published: Oct 21, 2019
Modified: Aug 5, 2024
PUBLISHED
Description
ProFTPD before 1.3.6b and 1.3.7rc before 1.3.7rc2 allows remote unauthenticated denial-of-service due to incorrect handling of overly long commands because main.c in a child process enters an infinite loop.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://github.com/proftpd/proftpd/issues/846
x_refsource_MISC
https://github.com/proftpd/proftpd/blob/master/RELEASE_NOTES
x_refsource_MISC
https://github.com/proftpd/proftpd/blob/1.3.6/RELEASE_NOTES
x_refsource_MISC
https://github.com/proftpd/proftpd/blob/master/NEWS
x_refsource_MISC
https://github.com/proftpd/proftpd/blob/1.3.6/NEWS
x_refsource_MISC
[debian-lts-announce] 20191027 [SECURITY] [DLA 1974-1] proftpd-dfsg security update
mailing-list
x_refsource_MLIST
FEDORA-2019-ae019c7e9f
vendor-advisory
x_refsource_FEDORA
FEDORA-2019-848e410cfb
vendor-advisory
x_refsource_FEDORA
FEDORA-2019-7559f29ace
vendor-advisory
x_refsource_FEDORA
20191106 [SECURITY] [DSA 4559-1] proftpd-dfsg security update
mailing-list
x_refsource_BUGTRAQ
DSA-4559
vendor-advisory
x_refsource_DEBIAN
openSUSE-SU-2020:0031
vendor-advisory
x_refsource_SUSE
https://cert-portal.siemens.com/productcert/pdf/ssa-940889.pdf
x_refsource_CONFIRM
GLSA-202003-35
vendor-advisory
x_refsource_GENTOO
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now