CVE-2005-2390 Information

Description

Multiple format string vulnerabilities in ProFTPD before 1.3.0rc2 allow attackers to cause a denial of service or obtain sensitive information via (1) certain inputs to the shutdown message from ftpshut or (2) the SQLShowInfo mod_sql directive.

Reference

http://marc.info/?l=bugtraq&m=112604373503912&w=2 http://secunia.com/advisories/16181 http://www.debian.org/security/2005/dsa-795 http://www.proftpd.org/docs/RELEASE_NOTES-1.3.0rc2 http://www.securityfocus.com/bid/14380 http://www.securityfocus.com/bid/14381

Share on: