Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-2375

Опубликовано: 09 июл. 2008
Источник: nvd
CVSS2: 7.1
EPSS Низкий

Описание

Memory leak in a certain Red Hat deployment of vsftpd before 2.0.5 on Red Hat Enterprise Linux (RHEL) 3 and 4, when PAM is used, allows remote attackers to cause a denial of service (memory consumption) via a large number of invalid authentication attempts within the same session, a different vulnerability than CVE-2007-5962.

Уязвимые конфигурации

Конфигурация 1

Одновременно

Одно из

cpe:2.3:o:redhat:enterprise_linux:3.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:4.0:*:*:*:*:*:*:*

Одно из

cpe:2.3:a:redhat:vsftpd:0.0.1:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:0.0.2:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:0.0.3:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:0.0.4:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:0.0.5:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:0.0.6:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:0.0.7:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:0.0.8:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:0.0.9:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:0.0.10:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:0.0.11:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:0.0.12:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:0.0.13:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:0.0.14:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:0.0.15:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:0.9.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:0.9.1:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:0.9.2:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:0.9.3:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:1.1.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:1.1.1:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:1.1.2:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:1.1.3:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:1.2.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:1.2.1:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:1.2.2:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:2.0.2:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:2.0.3:*:*:*:*:*:*:*
cpe:2.3:a:redhat:vsftpd:2.0.4:*:*:*:*:*:*:*

EPSS

Процентиль: 88%
0.03723
Низкий

7.1 High

CVSS2

Дефекты

CWE-399

Связанные уязвимости

ubuntu
около 17 лет назад

Memory leak in a certain Red Hat deployment of vsftpd before 2.0.5 on Red Hat Enterprise Linux (RHEL) 3 and 4, when PAM is used, allows remote attackers to cause a denial of service (memory consumption) via a large number of invalid authentication attempts within the same session, a different vulnerability than CVE-2007-5962.

redhat
около 19 лет назад

Memory leak in a certain Red Hat deployment of vsftpd before 2.0.5 on Red Hat Enterprise Linux (RHEL) 3 and 4, when PAM is used, allows remote attackers to cause a denial of service (memory consumption) via a large number of invalid authentication attempts within the same session, a different vulnerability than CVE-2007-5962.

debian
около 17 лет назад

Memory leak in a certain Red Hat deployment of vsftpd before 2.0.5 on ...

github
больше 3 лет назад

Memory leak in a certain Red Hat deployment of vsftpd before 2.0.5 on Red Hat Enterprise Linux (RHEL) 3 and 4, when PAM is used, allows remote attackers to cause a denial of service (memory consumption) via a large number of invalid authentication attempts within the same session, a different vulnerability than CVE-2007-5962.

EPSS

Процентиль: 88%
0.03723
Низкий

7.1 High

CVSS2

Дефекты

CWE-399