vsftpd before 1.2.2, when under heavy load, allows attackers to cause a denial of service (crash) via a SIGCHLD signal during a malloc or free call, which is not re-entrant.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Vsftpd | Beasts | 1.2.0 (including) | 1.2.0 (including) |
Vsftpd | Beasts | 1.2.1 (including) | 1.2.1 (including) |
Red Hat Enterprise Linux AS version 3 | RedHat | * | |
Red Hat Enterprise Linux ES version 3 | RedHat | * |