Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2007-5769

Overview

Vulnerability Score 10.0 10.0
CVE Id CVE-2007-5769
Last Modified 05 Sep 2008 05:31:37
Published 06 Dec 2007 10:46:00
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2007-5769

Summary

Double free vulnerability in the getreply function in ftp.c in netkit ftp (netkit-ftp) 0.17 20040614 and later allows remote FTP servers to cause a denial of service (application crash) and possibly have unspecified other impact via some types of FTP protocol behavior. NOTE: the netkit-ftpd issue is covered by CVE-2007-6263.

Vulnerable Systems

Application

  • Netkit-ftp Netkit Ftp 0.17


References

MISC - http://bugs.gentoo.org/show_bug.cgi?id=199206

BID - 26764

FULLDISC - 20071207 netkit-ftpd/ftp uninitialized vulnerability

CONFIRM - http://cvs.fedora.redhat.com/viewcvs/rpms/ftp/F-8/netkit-ftp-0.17-sigseg.patch?view=auto


Last Updated: 27 May 2016 10:46:16