Closed peris-navince closed 1 year ago
Hello,
We will verify your findings and let you know results, thanks for information.
What exactly happening after you execute your command? Is there any segfault or server become unresponsible? Check your dmesg output for segfaults.
Then the client will display "421 Service not available, remote server has closed connection".
This is expected result of handling malformed data from client. So far I see no clear indication of something wrong here. We need more details.
I'm sorry to bother you,it is my fault. I feel really sorry,please accept my apologies.
Everything is fine, no need to apologize.
Hi, There exists a vulnerability related to the params parameter of the ftpSIZE function of the ftpserver.c file, which may lead to dos attacks or privileged commands. Steps to reproduce: