Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2005-0256
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2005-0256

Description:
The wu_fnmatch function in wu_fnmatch.c in wu-ftpd 2.6.1 and 2.6.2 allows remote attackers to cause a denial of service (CPU exhaustion by recursion) via a glob pattern with a large number of * (wildcard) characters, as demonstrated using the dir command.

CVE Status:
Candidate

References:

SUNALERT
  http://sunsolve.sun.com/search/document.do?assetkey=1-26-101699-1
  http://sunsolve.sun.com/search/document.do?assetkey=1-26-57795-1

SCO

SAID
  Secunia Advisory: SA18210
  Secunia Advisory: SA14411
  Secunia Advisory: SA19561

OVAL
  http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1762
  http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1333
  http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1265

OSVDB
  14203

IDEFENSE
  http://www.idefense.com/application/poi/display?id=207&type=vulnerabilities

HP
  http://itrc.hp.com/service/cki/docDisplay.do?docId=c00637342

DEBIAN
  http://www.debian.org/security/2005/dsa-705


Return to the previous page.