Vulnerability Description
Double free vulnerability in the ftpprchild function in ftppr in 3proxy 0.5 through 0.5.3i allows remote attackers to cause a denial of service (daemon crash) via multiple OPEN commands to the FTP proxy.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| 3Proxy | 3Proxy | 0.5 |
Related Weaknesses (CWE)
References
- http://3proxy.ru/0.5.3j/Changelog.txtPatch
- http://bugs.gentoo.org/show_bug.cgi?id=196772
- http://lists.grok.org.uk/pipermail/full-disclosure/2007-October/066985.html
- http://osvdb.org/41870
- http://secunia.com/advisories/27353PatchVendor Advisory
- http://secunia.com/advisories/27607Vendor Advisory
- http://security.gentoo.org/glsa/glsa-200711-13.xml
- http://www.securityfocus.com/archive/1/482697/100/0/threaded
- http://www.securityfocus.com/bid/26180Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/37401
- http://3proxy.ru/0.5.3j/Changelog.txtPatch
- http://bugs.gentoo.org/show_bug.cgi?id=196772
- http://lists.grok.org.uk/pipermail/full-disclosure/2007-October/066985.html
- http://osvdb.org/41870
- http://secunia.com/advisories/27353PatchVendor Advisory
FAQ
What is CVE-2007-5622?
CVE-2007-5622 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Double free vulnerability in the ftpprchild function in ftppr in 3proxy 0.5 through 0.5.3i allows remote attackers to cause a denial of service (daemon crash) via multiple OPEN commands to the FTP pro...
How severe is CVE-2007-5622?
CVE-2007-5622 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2007-5622?
Check the references section above for vendor advisories and patch information. Affected products include: 3Proxy 3Proxy.