When the daemon is sent 40 or more "USER"
commands the system runs out of memory and crashes.
By sending the service a "PORT" command followed
by an immediate client disconnect FTP service will stop accepting connections.
VENDOR RESPONSE
The vendor is aware of this matter, however no response was known at the time of this writing.
CREDITS
|
Nite FTPd Server DoS
1 comment
Hide comments