vendor:
ftpd service
by:
6.5
CVSS
MEDIUM
Denial of Service
476
CWE
Product Name: ftpd service
Affected Version From: FreeBSD 8.0, 6.3, 4.9OpenBSD 4.5 and 4.6
Affected Version To:
Patch Exists: YES
Related CWE:
CPE:
Platforms Tested:
NULL-pointer dereference vulnerability in FreeBSD and OpenBSD ftpd service
The FreeBSD and OpenBSD 'ftpd' service is prone to a denial-of-service vulnerability because of a NULL-pointer dereference. Successful exploits may allow remote attackers to cause denial-of-service conditions. Given the nature of this issue, attackers may also be able to run arbitrary code, but this has not been confirmed.
Mitigation:
Apply patches provided by the vendor.