Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Gentoo: GLSA-200701-09 Normal: oftpd Denial Of Service Threat

gentoo
Calendar Grey January 15, 2007
Dist Gentoo Esm H88
This notification addresses a vulnerability in oftpd impacting Gentoo users; upgrading is advised to avert potential exploitation.
An assertion in oftpd could lead to a denial of service vulnerability.

Summary

Gentoo Linux Security Advisory GLSA 200701-09 https://security.gentoo.org/ Severity: Normal Title: oftpd: Denial of Service Date: January 15, 2007 Bugs: #159178 ID: 200701-09

Synopsis ======= An assertion in oftpd could lead to a denial of service vulnerability.
Background ========= oftpd is a small, anonymous only ftp daemon.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 net-ftp/oftpd < 0.3.7-r3 >= 0.3.7-r3
========== By specifying an unsupported address family in the arguments to a LPRT or LPASV command, an assertion in oftpd will cause the daemon to abort.
Impact ===== Remote, unauthenticated attackers may be able to terminate any oftpd process, denyi...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Your message here