FTP: Blackmoon FTP Denial of Service

This signature detects attempts to exploit a known vulnerability against Blackmoon FTP. A successful attack can lead to denial of service.

Extended Description

FTPService.exe in Blackmoon FTP 3.1 Build 1735 and Build 1736 (3.1.7.1736), and possibly other versions before 3.1.8.1737, allows remote attackers to cause a denial of service (crash) via a large number of PORT commands with long arguments, which triggers a NULL pointer dereference. NOTE: some of these details are obtained from third party information.

Affected Products

Blackmoonftpserver blackmoon_ftp_server

References

CVE: CVE-2011-0507

Short Name
FTP:DOS:PORT-ARGS
Severity
Major
Recommended
False
Recommended Action
Drop
Category
FTP
Keywords
Blackmoon CVE-2011-0507 Denial FTP Service of
Release Date
10/18/2016
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3761
False Positive
Unknown
Vendors

Blackmoonftpserver

CVSS Score

4.3

Found a potential security threat?