PT-2004-1743 · Pure Ftpd · Pure-Ftpd
Published
2004-07-13
·
Updated
2017-07-11
·
CVE-2004-0656
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
PureFTPd versions 1.0.18 and earlier
Description
The issue allows remote attackers to cause a denial of service by exceeding the maximum number of connections, specifically through the
accept client function.Recommendations
For PureFTPd versions 1.0.18 and earlier, consider restricting the number of connections to prevent denial of service attacks until a patch is available. As a temporary workaround, limiting the maximum number of connections may help mitigate the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Pure-Ftpd