Facebook Google Plus Twitter LinkedIn YouTube RSS Menu Search Resource - BlogResource - WebinarResource - ReportResource - Eventicons_066 icons_067icons_068icons_069icons_070

Serv-U FTP Server < 5.2.0.1 'STOU' Command Remote DoS

Medium

Synopsis

The remote host is vulnerable to a Denial of Service (DoS) attack.

Description

The remote host is running Serv-U FTP server. There is a bug in the way this version handles the 'STOU' command, which is used to send files to a remote server. It is reported that Serv-U FTP server will crash if it receives certain 'STOU' requests. An attacker may connect to the remote server and issue a 'STOU' request to deny service to legitimate users.

Solution

Upgrade to version 5.2.0.1 or higher.