icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons_061

Serv-U FTP Server < 5.2.0.1 'STOU' Command Remote DoS

Medium

Synopsis

The remote host is vulnerable to a Denial of Service (DoS) attack.

Description

The remote host is running Serv-U FTP server. There is a bug in the way this version handles the 'STOU' command, which is used to send files to a remote server. It is reported that Serv-U FTP server will crash if it receives certain 'STOU' requests. An attacker may connect to the remote server and issue a 'STOU' request to deny service to legitimate users.

Solution

Upgrade to version 5.2.0.1 or higher.