Short Name |
FTP:DOS:VSFTPD-CONNECTION |
---|---|
Severity |
Major |
Recommended |
No |
Recommended Action |
Drop |
Category |
FTP |
Keywords |
VSFTPD Connection Handling DOS |
Release Date |
2014/08/11 |
Update Number |
2407 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+ |
This signature detects attempts to exploit a known vulnerability against VSFTPD server. A successful attack can result in a denial-of-service condition.
According to the vendor, vsftpd is prone to a denial of service condition in the connection handling code. Vsftpd's listener process can become unstable under extreme loads, denying service to legitimate users. The issue apparently arises from reentering malloc and free, possibly corrupting memory. Vsftpd calls non-reentrant functions inappropriately, thus leading to a denial of service vulnerability.