← All CVEs

CVE-2007-5962

high · 7.1

Memory leak in a certain Red Hat patch, applied to vsftpd 2.0.5 on Red Hat Enterprise Linux (RHEL) 5 and Fedora 6 through 8, and on Foresight Linux and rPath appliances, allows remote attackers to cause a denial of service (memory consumption) via a large number of CWD commands, as demonstrated by an attack on a daemon with the deny_file configuration option.

7.1
CVSS
12.1%
EPSS (exploit prob.)
96th
EPSS percentile
2008-05-22
Published

AV:N/AC:M/Au:N/C:N/I:N/A:C

Weaknesses

CWE-399

Affected products

VendorProductAffected versions
redhatenterprise_linux5.0
redhatfedora6
redhatfedora7
redhatfedora8
foresight_linuxappliancesall versions
rpathappliance_platform_agentall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2007-5962