Back to Database
Status published
Medium
CVE-2001-0136
Memory leak in ProFTPd 1.2.0rc2 allows remote attackers to cause...
Vulnerability Description
Memory leak in ProFTPd 1.2.0rc2 allows remote attackers to cause a denial of service via a series of USER commands, and possibly SIZE commands if the server has been improperly installed.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2001-0136
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-021.php3
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000380
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5801
- http://archives.neohapsis.com/archives/bugtraq/2001-01/0122.html
- http://archives.neohapsis.com/archives/bugtraq/2001-01/0132.html
- http://archives.neohapsis.com/archives/bugtraq/2001-02/0267.html
- http://www.securityfocus.com/archive/1/152206
- http://www.debian.org/security/2001/dsa-029
More from proftpd
View All →CVE-2021-46854
mod_radius in ProFTPD before 1.3.7c allows memory disclosure to RADIUS...
Unknown
0
CVE-2020-9273
In ProFTPD 1.3.7, it is possible to corrupt the memory...
High
8.8
CVE-2020-9272
ProFTPD 1.3.7 has an out-of-bounds (OOB) read vulnerability in mod_cap...
High
7.5
CVE-2019-19272
An issue was discovered in tls_verify_crl in ProFTPD before 1.3.6....
High
7.5
CVE-2019-19271
An issue was discovered in tls_verify_crl in ProFTPD before 1.3.6....
High
7.5
Affected Vendor
proftpd
View all reports →Affected Software
proftpd, linux, debian linux, mandrake linux
Vulnerable Versions:
1.2.0, 2.2, 7.2
Timeline
Official Publish:
September 18th, 2001
Last Modified:
August 8th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.