Open Vulnerability and Assessment Language (OVAL)
Contact Us Downloads News July 2, 2009 Search
link to OVAL home page

View Definition

Definition Id: oval:org.mitre.oval:def:1762 Date: 2007-09-13
Title: WU-FTPD "glob-*" Remote DoS Vulnerability (B.11.11)
Description: The wu_fnmatch function in wu_fnmatch.c in wu-ftpd 2.6.1 and 2.6.2 allows remote attackers to cause a denial of service (CPU exhaustion by recursion) via a glob pattern with a large number of * (wildcard) characters, as demonstrated using the dir command.
Version: 2 Class: vulnerability
Status: ACCEPTED Reference(s): CVE-2005-0256
Family: unix
Platform(s): HP-UX 11 Product(s): ftpd
Definition Synopsis:

OVAL is CVE Compatible