Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rc77-w9xr-6vvf

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

filter.d/wuftpd.conf in Fail2ban 0.8.3 uses an incorrect regular expression that allows remote attackers to cause a denial of service (forced authentication failures) via a crafted reverse-resolved DNS name (rhost) entry that contains a substring that is interpreted as an IP address, a different vulnerability than CVE-2007-4321.

filter.d/wuftpd.conf in Fail2ban 0.8.3 uses an incorrect regular expression that allows remote attackers to cause a denial of service (forced authentication failures) via a crafted reverse-resolved DNS name (rhost) entry that contains a substring that is interpreted as an IP address, a different vulnerability than CVE-2007-4321.

EPSS

Процентиль: 68%
0.01303
Низкий

Дефекты

CWE-287

Связанные уязвимости

ubuntu
больше 17 лет назад

filter.d/wuftpd.conf in Fail2ban 0.8.3 uses an incorrect regular expression that allows remote attackers to cause a denial of service (forced authentication failures) via a crafted reverse-resolved DNS name (rhost) entry that contains a substring that is interpreted as an IP address, a different vulnerability than CVE-2007-4321.

redhat
больше 17 лет назад

filter.d/wuftpd.conf in Fail2ban 0.8.3 uses an incorrect regular expression that allows remote attackers to cause a denial of service (forced authentication failures) via a crafted reverse-resolved DNS name (rhost) entry that contains a substring that is interpreted as an IP address, a different vulnerability than CVE-2007-4321.

nvd
больше 17 лет назад

filter.d/wuftpd.conf in Fail2ban 0.8.3 uses an incorrect regular expression that allows remote attackers to cause a denial of service (forced authentication failures) via a crafted reverse-resolved DNS name (rhost) entry that contains a substring that is interpreted as an IP address, a different vulnerability than CVE-2007-4321.

debian
больше 17 лет назад

filter.d/wuftpd.conf in Fail2ban 0.8.3 uses an incorrect regular expre ...

EPSS

Процентиль: 68%
0.01303
Низкий

Дефекты

CWE-287