Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-5917

Опубликовано: 09 окт. 2015
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

The glob implementation in tnftpd (formerly lukemftpd), as used in Apple OS X before 10.11, allows remote attackers to cause a denial of service (memory consumption and daemon outage) via a STAT command containing a crafted pattern, as demonstrated by multiple instances of the {..,..,..}/* substring.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:a:netbsd:tnftpd:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:mac_os_x:10.10.5:*:*:*:*:*:*:*

EPSS

Процентиль: 81%
0.01612
Низкий

5 Medium

CVSS2

Дефекты

CWE-119

Связанные уязвимости

github
больше 3 лет назад

The glob implementation in tnftpd (formerly lukemftpd), as used in Apple OS X before 10.11, allows remote attackers to cause a denial of service (memory consumption and daemon outage) via a STAT command containing a crafted pattern, as demonstrated by multiple instances of the {..,..,..}/* substring.

EPSS

Процентиль: 81%
0.01612
Низкий

5 Medium

CVSS2

Дефекты

CWE-119