Vulnerabilities > CVE-2009-5013 - Resource Management Errors vulnerability in G.Rodola Pyftpdlib

047910
CVSS 4.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
SINGLE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
g-rodola
CWE-399
nessus

Summary

Memory leak in the on_dtp_close function in ftpserver.py in pyftpdlib before 0.5.2 allows remote authenticated users to cause a denial of service (memory consumption) by sending a QUIT command during a data transfer.

Common Weakness Enumeration (CWE)

Nessus

NASL familyFedora Local Security Checks
NASL idFEDORA_2010-16731.NASL
description - Tue Oct 26 2010 Silas Sewell <silas at sewell.ch> - 0.5.2-1 - Update to 0.5.2 Note that Tenable Network Security has extracted the preceding description block directly from the Fedora security advisory. Tenable has attempted to automatically clean and format it as much as possible without introducing additional issues.
last seen2020-06-01
modified2020-06-02
plugin id50482
published2010-11-05
reporterThis script is Copyright (C) 2010-2019 and is owned by Tenable, Inc. or an Affiliate thereof.
sourcehttps://www.tenable.com/plugins/nessus/50482
titleFedora 12 : pyftpdlib-0.5.2-1.fc12 (2010-16731)