PT-2003-2274 · Washington University · Wu-Ftpd
Published
2003-12-31
·
Updated
2008-09-05
·
CVE-2003-1329
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
wu-ftpd version 2.6.2
Description
The issue is related to the ftpd.c component in wu-ftpd, which fails to close connections that have not been successfully established when running on certain operating systems. This can be exploited by remote attackers to cause a denial of service.
Recommendations
For wu-ftpd version 2.6.2, consider implementing measures to limit the number of concurrent connections to prevent abuse, and ensure proper connection handling to mitigate the risk of denial of service attacks. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Wu-Ftpd