Lucene search

K
cve[email protected]CVE-2007-0247
HistoryJan 16, 2007 - 6:28 p.m.

CVE-2007-0247

2007-01-1618:28:00
CWE-399
web.nvd.nist.gov
31
squid
ftp
denial of service
vulnerability
cve-2007-0247

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

6.3 Medium

AI Score

Confidence

Low

0.967 High

EPSS

Percentile

99.6%

squid/src/ftp.c in Squid before 2.6.STABLE7 allows remote FTP servers to cause a denial of service (core dump) via crafted FTP directory listing responses, possibly related to the (1) ftpListingFinish and (2) ftpHtmlifyListEntry functions.

Affected configurations

NVD
Node
squidsquidMatch2.6.stable1
OR
squidsquidMatch2.6.stable2
OR
squidsquidMatch2.6.stable3
OR
squidsquidMatch2.6.stable4
OR
squidsquidMatch2.6.stable5
OR
squidsquidMatch2.6.stable6

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

6.3 Medium

AI Score

Confidence

Low

0.967 High

EPSS

Percentile

99.6%