漏洞信息详情
ProFTPD客户端主机名解析漏洞
- CNNVD编号:CNNVD-200112-241
- 危害等级: 高危
- CVE编号:
CVE-2001-1500
- 漏洞类型:
设计错误
- 发布时间:
2001-12-31
- 威胁类型:
远程
- 更新时间:
2006-01-27
- 厂 商:
proftpd_project - 漏洞来源:
Discovered by Matt… -
漏洞简介
ProFTPD 1.2.2rc2和可能其他版本不能通过前向决议正确核实反向解析主机名。远程攻击者可以利用该漏洞绕过ACLs或导致错误客户端主机名登录。
漏洞公告
Upgrades are available.
ProFTPD Project ProFTPD 1.2 pre1
-
ProFTPD Project proftpd-1.2.4.tar.gz
ftp://ftp.proftpd.org/distrib/source/proftpd-1.2.4.tar.gz
ProFTPD Project ProFTPD 1.2 pre9
-
ProFTPD Project proftpd-1.2.4.tar.gz
ftp://ftp.proftpd.org/distrib/source/proftpd-1.2.4.tar.gz
ProFTPD Project ProFTPD 1.2 .0rc3
-
Conectiva proftpd-1.2.5rc1-1U50_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/5.0/i386/proftpd-1.2.5rc1-1U50_1cl
.i386.rpm -
Conectiva proftpd-1.2.5rc1-1U50_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/ferramentas/ecommerce/i386/proftpd
-1.2.5rc1-1U50_1cl.i386.rpm -
Conectiva proftpd-1.2.5rc1-1U50_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/ferramentas/graficas/i386/proftpd-
1.2.5rc1-1U50_1cl.i386.rpm -
Conectiva proftpd-1.2.5rc1-1U51_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/5.1/i386/proftpd-1.2.5rc1-1U51_1cl
.i386.rpm -
Conectiva proftpd-1.2.5rc1-1U60_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/6.0/RPMS/proftpd-1.2.5rc1-1U60_1cl
.i386.rpm -
Conectiva proftpd-1.2.5rc1-1U70_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/7.0/RPMS/proftpd-1.2.5rc1-1U70_1cl
.i386.rpm -
Conectiva proftpd-doc-1.2.5rc1-1U50_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/5.0/i386/proftpd-doc-1.2.5rc1-1U50
_1cl.i386.rpm -
Conectiva proftpd-doc-1.2.5rc1-1U50_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/ferramentas/graficas/i386/proftpd-
doc-1.2.5rc1-1U50_1cl.i386.rpm -
Conectiva proftpd-doc-1.2.5rc1-1U51_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/5.1/i386/proftpd-doc-1.2.5rc1-1U51
_1cl.i386.rpm -
Conectiva proftpd-doc-1.2.5rc1-1U60_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/6.0/RPMS/proftpd-doc-1.2.5rc1-1U60
_1cl.i386.rpm -
Conectiva proftpd-doc-1.2.5rc1-1U70_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/7.0/RPMS/proftpd-doc-1.2.5rc1-1U70
_1cl.i386.rpm -
Mandrake proftpd-1.2.5-0.rc1.1.2mdk.i586.rpmMandrake Linux 7.2 i586 upgrade.
http://www.linux-mandrake.com/en/ftp.php3 -
Mandrake proftpd-1.2.5-0.rc1.1mdk.i586.rpmMandrake Linux 8.0 i586 upgrade.
http://www.linux-mandrake.com/en/ftp.php3 -
Mandrake proftpd-1.2.5-0.rc1.1mdk.i586.rpmMandrake Linux 8.1 i586 upgrade.
http://www.linux-mandrake.com/en/ftp.php3 -
Mandrake proftpd-1.2.5-0.rc1.1mdk.ppc.rpmMandrake Linux 8.0 PPC upgrade.
http://www.linux-mandrake.com/en/ftp.php3 -
Mandrake proftpd-1.2.5-0.rc1.2mdk.ia64.rpmMandrake Linux 8.1 IA64 upgrade.
http://www.linux-mandrake.com/en/ftp.php3 -
ProFTPD Project proftpd-1.2.4.tar.gz
ftp://ftp.proftpd.org/distrib/source/proftpd-1.2.4.tar.gz
ProFTPD Project ProFTPD 1.2 pre4
-
ProFTPD Project proftpd-1.2.4.tar.gz
ftp://ftp.proftpd.org/distrib/source/proftpd-1.2.4.tar.gz
ProFTPD Project ProFTPD 1.2 pre5
-
ProFTPD Project proftpd-1.2.4.tar.gz
ftp://ftp.proftpd.org/distrib/source/proftpd-1.2.4.tar.gz
ProFTPD Project ProFTPD 1.2 pre7
-
ProFTPD Project proftpd-1.2.4.tar.gz
ftp://ftp.proftpd.org/distrib/source/proftpd-1.2.4.tar.gz
ProFTPD Project ProFTPD 1.2 pre3
-
ProFTPD Project proftpd-1.2.4.tar.gz
ftp://ftp.proftpd.org/distrib/source/proftpd-1.2.4.tar.gz
ProFTPD Project ProFTPD 1.2 pre2
-
ProFTPD Project proftpd-1.2.4.tar.gz
ftp://ftp.proftpd.org/distrib/source/proftpd-1.2.4.tar.gz
ProFTPD Project ProFTPD 1.2 pre8
-
ProFTPD Project proftpd-1.2.4.tar.gz
ftp://ftp.proftpd.org/distrib/source/proftpd-1.2.4.tar.gz
ProFTPD Project ProFTPD 1.2 pre11
-
ProFTPD Project proftpd-1.2.4.tar.gz
ftp://ftp.proftpd.org/distrib/source/proftpd-1.2.4.tar.gz
ProFTPD Project ProFTPD 1.2 pre6
-
ProFTPD Project proftpd-1.2.4.tar.gz
ftp://ftp.proftpd.org/distrib/source/proftpd-1.2.4.tar.gz
ProFTPD Project ProFTPD 1.2
-
ProFTPD Project proftpd-1.2.4.tar.gz
ftp://ftp.proftpd.org/distrib/source/proftpd-1.2.4.tar.gz
ProFTPD Project ProFTPD 1.2 pre10
-
ProFTPD Project proftpd-1.2.4.tar.gz
ftp://ftp.proftpd.org/distrib/source/proftpd-1.2.4.tar.gz
ProFTPD Project ProFTPD 1.2.1
-
ProFTPD Project proftpd-1.2.4.tar.gz
ftp://ftp.proftpd.org/distrib/source/proftpd-1.2.4.tar.gz
ProFTPD Project ProFTPD 1.2.2 rc1
-
ProFTPD Project proftpd-1.2.4.tar.gz
ftp://ftp.proftpd.org/distrib/source/proftpd-1.2.4.tar.gz
ProFTPD Project ProFTPD 1.2.2
-
ProFTPD Project proftpd-1.2.4.tar.gz
ftp://ftp.proftpd.org/distrib/source/proftpd-1.2.4.tar.gz
ProFTPD Project ProFTPD 1.2.2 rc3
- ProFT
参考网址
来源: BID
名称: 3310
链接:http://www.securityfocus.com/bid/3310
来源: XF
名称: proftpd-unresolved-hostname(7126)
链接:http://xforce.iss.net/static/7126.php
来源: BUGTRAQ
名称: 20010907 ProFTPd and reverse DNS
链接:http://www.securityfocus.com/archive/1/212805
来源: CONECTIVA
名称: CLA-2002:450
链接:http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000450
来源: CONECTIVA
名称: CLA-2002:450
链接:http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000450
来源: MANDRAKE
名称: MDKSA-2002:005
链接:http://www.mandriva.com/security/advisories?name=MDKSA-2002:005