FTP: VSFTPD Connection Handling DOS

This signature detects attempts to exploit a known vulnerability against VSFTPD server. A successful attack can result in a denial-of-service condition.

Extended Description

According to the vendor, vsftpd is prone to a denial of service condition in the connection handling code. Vsftpd's listener process can become unstable under extreme loads, denying service to legitimate users. The issue apparently arises from reentering malloc and free, possibly corrupting memory. Vsftpd calls non-reentrant functions inappropriately, thus leading to a denial of service vulnerability.

Affected Products

Vsftpd vsftpd

References

BugTraq: 10394

CVE: CVE-2004-2259

Short Name
FTP:DOS:VSFTPD-CONNECTION
Severity
Major
Recommended
False
Recommended Action
Drop
Category
FTP
Keywords
CVE-2004-2259 Connection DOS Handling VSFTPD bid:10394
Release Date
08/11/2014
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3375
False Positive
Unknown
Vendors

Vsftpd

CVSS Score

5.0

Found a potential security threat?