5

CVE-2007-5622

Double free vulnerability in the ftpprchild function in ftppr in 3proxy 0.5 through 0.5.3i allows remote attackers to cause a denial of service (daemon crash) via multiple OPEN commands to the FTP proxy.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
3proxy3proxy Version0.5
3proxy3proxy Version0.5.1
3proxy3proxy Version0.5.2
3proxy3proxy Version0.5.3g
3proxy3proxy Version0.5.3h
3proxy3proxy Version0.5.3i
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.08% 0.791
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://3proxy.ru/0.5.3j/Changelog.txt
Patch
http://bugs.gentoo.org/show_bug.cgi?id=196772
http://lists.grok.org.uk/pipermail/full-disclosure/2007-October/066985.html
http://osvdb.org/41870
http://secunia.com/advisories/27353
Patch
Vendor Advisory
http://secunia.com/advisories/27607
Vendor Advisory
http://security.gentoo.org/glsa/glsa-200711-13.xml
http://www.securityfocus.com/archive/1/482697/100/0/threaded
http://www.securityfocus.com/bid/26180
Patch
https://exchange.xforce.ibmcloud.com/vulnerabilities/37401