{ "CVE_data_meta" : { "ASSIGNER" : "cve@mitre.org", "ID" : "CVE-2010-4754", "STATE" : "PUBLIC" }, "affects" : { "vendor" : { "vendor_data" : [ { "product" : { "product_data" : [ { "product_name" : "n/a", "version" : { "version_data" : [ { "version_value" : "n/a" } ] } } ] }, "vendor_name" : "n/a" } ] } }, "data_format" : "MITRE", "data_type" : "CVE", "data_version" : "4.0", "description" : { "description_data" : [ { "lang" : "eng", "value" : "The glob implementation in libc in FreeBSD 7.3 and 8.1, NetBSD 5.0.2, and OpenBSD 4.7, and Libsystem in Apple Mac OS X before 10.6.8, allows remote authenticated users to cause a denial of service (CPU and memory consumption) via crafted glob expressions that do not match any pathnames, as demonstrated by glob expressions in STAT commands to an FTP daemon, a different vulnerability than CVE-2010-2632." } ] }, "problemtype" : { "problemtype_data" : [ { "description" : [ { "lang" : "eng", "value" : "n/a" } ] } ] }, "references" : { "reference_data" : [ { "name" : "20101007 Multiple Vendors libc/glob(3) resource exhaustion (+0day remote ftpd-anon)", "refsource" : "SREASONRES", "url" : "http://securityreason.com/achievement_securityalert/89" }, { "name" : "http://cxib.net/stuff/glob-0day.c", "refsource" : "MISC", "url" : "http://cxib.net/stuff/glob-0day.c" }, { "name" : "http://securityreason.com/exploitalert/9223", "refsource" : "MISC", "url" : "http://securityreason.com/exploitalert/9223" }, { "name" : "http://cvsweb.netbsd.org/cgi-bin/cvsweb.cgi/src/lib/libc/gen/glob.3#rev1.30.12.1", "refsource" : "CONFIRM", "url" : "http://cvsweb.netbsd.org/cgi-bin/cvsweb.cgi/src/lib/libc/gen/glob.3#rev1.30.12.1" }, { "name" : "http://cvsweb.netbsd.org/cgi-bin/cvsweb.cgi/src/lib/libc/gen/glob.c#rev1.18.10.1", "refsource" : "CONFIRM", "url" : "http://cvsweb.netbsd.org/cgi-bin/cvsweb.cgi/src/lib/libc/gen/glob.c#rev1.18.10.1" }, { "name" : "http://support.apple.com/kb/HT4723", "refsource" : "CONFIRM", "url" : "http://support.apple.com/kb/HT4723" }, { "name" : "APPLE-SA-2011-06-23-1", "refsource" : "APPLE", "url" : "http://lists.apple.com/archives/security-announce/2011//Jun/msg00000.html" }, { "name" : "NetBSD-SA2010-008", "refsource" : "NETBSD", "url" : "http://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2010-008.txt.asc" }, { "name" : "8116", "refsource" : "SREASON", "url" : "http://securityreason.com/securityalert/8116" } ] } }