OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: Memory leakage in proftpd leads to remote DoS
From: Wojciech Purczynski (wpELZABSOFT.PL)
Date: Fri Dec 22 2000 - 06:53:01 CST


> The developers of proftpd have tried to confirm this bug, using scripts to
> issue the SIZE command for hundred thousands of iterations, and failed to
> verify that it does indeed exist.
>
> Versions of proftpd tested: pre10, rc1, rc2, and CVS. All failed to show
> symptoms of this memory leak.

I've investigated the problem a little bit more and it seems that this
memory leakage really _exist_ but only if proftpd runs in INETD mode.

If proftpd works as standalone daemon it works fine and does not consume
system memory.

Merry Christmas and Happy New Millenium :)
wp

+--------------------------------------------------------------------+
| Wojciech Purczynski wpelzabsoft.pl http://www.elzabsoft.pl/~wp |
| GSM: +48604432981 Linux Administrator SMS: wp-smselzabsoft.pl |
+------ Public GnuPG Key: http://www.elzabsoft.pl/~wp/gpg.asc ------+