CVE-2007-5962

vsftpd <2.0.5 - DoS

Title source: llm

Description

Memory leak in a certain Red Hat patch, applied to vsftpd 2.0.5 on Red Hat Enterprise Linux (RHEL) 5 and Fedora 6 through 8, and on Foresight Linux and rPath appliances, allows remote attackers to cause a denial of service (memory consumption) via a large number of CWD commands, as demonstrated by an attack on a daemon with the deny_file configuration option.

Exploits (4)

exploitdb WORKING POC VERIFIED
by Praveen Darshanam · perldoslinux
https://www.exploit-db.com/exploits/5814
exploitdb WORKING POC VERIFIED
by Praveen Darshanam · perldoswindows
https://www.exploit-db.com/exploits/31819
exploitdb WORKING POC VERIFIED
by Martin Nagy · bashdoswindows
https://www.exploit-db.com/exploits/31818
nomisec WORKING POC 1 stars
by antogit-sys · poc
https://github.com/antogit-sys/CVE-2007-5962

Scores

EPSS 0.1715
EPSS Percentile 95.0%

Details

CWE
CWE-399
Status published
Products (6)
foresight_linux/appliances
redhat/enterprise_linux 5.0
redhat/fedora 6
redhat/fedora 7
redhat/fedora 8
rpath/appliance_platform_agent
Published May 22, 2008
Tracked Since Feb 18, 2026