Back to Database
Status published
Medium
CVE-2007-5622
Double free vulnerability in the ftpprchild function in ftppr in...
Vulnerability Description
Double free vulnerability in the ftpprchild function in ftppr in 3proxy 0.5 through 0.5.3i allows remote attackers to cause a denial of service (daemon crash) via multiple OPEN commands to the FTP proxy.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2007-5622
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.securityfocus.com/bid/26180
- http://osvdb.org/41870
- http://security.gentoo.org/glsa/glsa-200711-13.xml
- http://www.securityfocus.com/archive/1/482697/100/0/threaded
- http://lists.grok.org.uk/pipermail/full-disclosure/2007-October/066985.html
- http://3proxy.ru/0.5.3j/Changelog.txt
- http://bugs.gentoo.org/show_bug.cgi?id=196772
- https://exchange.xforce.ibmcloud.com/vulnerabilities/37401
- http://secunia.com/advisories/27353
- http://secunia.com/advisories/27607
More from 3proxy
View All →CVE-2019-14495
webadmin.c in 3proxy before 0.8.13 has an out-of-bounds write in...
Medium
5.8
CVE-2007-2031
Buffer overflow in the HTTP proxy service for 3proxy 0.5...
Critical
10
CVE-2006-6982
3proxy 0.5 to 0.5.2 does not offer NTLM authentication before...
Medium
5
CVE-2006-6981
3proxy 0.5 to 0.5.2, when NT-encoded passwords are being used,...
Medium
5
Affected Vendor
3proxy
View all reports →Affected Software
3proxy
Vulnerable Versions:
0.5, 0.5.1, 0.5.2, 0.5.3g, 0.5.3h, 0.5.3i
Timeline
Official Publish:
October 29th, 2007
Last Modified:
August 7th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.