← Vulnerability feed

Vulnerability record · CVE-2011-1137 · published 11 March 2011

CVE-2011-1137: Proftpd vulnerability

PProftpd · Proftpd

Integer overflow in the mod_sftp (aka SFTP) module in ProFTPD 1.3.3d and earlier allows remote attackers to cause a denial of service (memory consumption leading to OOM kill) via a malformed SSH message.

5.0 CVSS 2.0 Medium EPSS 28% · top 2.0% CWE-189 · CWE-189
5.0CVSS 2.0 base score
28%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
34References, 6 tagged exploit
16 Jun 2026Last modified by NVD

Description

Integer overflow in the mod_sftp (aka SFTP) module in ProFTPD 1.3.3d and earlier allows remote attackers to cause a denial of service (memory consumption leading to OOM kill) via a malformed SSH message.

AV:N/AC:L/Au:N/C:N/I:N/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
http://bugs.proftpd.org/show_bug.cgi?id=3586 Patch
http://bugs.proftpd.org/show_bug.cgi?id=3587
http://lists.fedoraproject.org/pipermail/package-announce/2011-April/058344.html
http://lists.fedoraproject.org/pipermail/package-announce/2011-April/058356.html
http://proftp.cvs.sourceforge.net/viewvc/proftp/proftpd/contrib/mod_sftp/mod_sftp.c?r1=1.29.2.1&r2=1.29.2.2 Patch
http://proftp.cvs.sourceforge.net/viewvc/proftp/proftpd/contrib/mod_sftp/packet.c?r1=1.14.2.2&r2=1.14.2.3 Vendor Advisory
http://proftp.cvs.sourceforge.net/viewvc/proftp/proftpd/contrib/mod_sftp/packet.h?r1=1.3&r2=1.3.2.1 Vendor Advisory
http://secunia.com/advisories/43234 Vendor Advisory
http://secunia.com/advisories/43635 Vendor Advisory
http://secunia.com/advisories/43978
http://slackware.com/security/viewer.php?l=slackware-security&y=2011&m=slackware-security.485806
http://www.debian.org/security/2011/dsa-2185
http://www.exploit-db.com/exploits/16129/ Exploit
http://www.securityfocus.com/bid/46183 Exploit
http://www.vupen.com/english/advisories/2011/0617 Vendor Advisory
http://www.vupen.com/english/advisories/2011/0857
https://bugzilla.redhat.com/show_bug.cgi?id=681718 ExploitPatch
http://bugs.proftpd.org/show_bug.cgi?id=3586 Patch
http://bugs.proftpd.org/show_bug.cgi?id=3587
http://lists.fedoraproject.org/pipermail/package-announce/2011-April/058344.html
http://lists.fedoraproject.org/pipermail/package-announce/2011-April/058356.html
http://proftp.cvs.sourceforge.net/viewvc/proftp/proftpd/contrib/mod_sftp/mod_sftp.c?r1=1.29.2.1&r2=1.29.2.2 Patch
http://proftp.cvs.sourceforge.net/viewvc/proftp/proftpd/contrib/mod_sftp/packet.c?r1=1.14.2.2&r2=1.14.2.3 Vendor Advisory
http://proftp.cvs.sourceforge.net/viewvc/proftp/proftpd/contrib/mod_sftp/packet.h?r1=1.3&r2=1.3.2.1 Vendor Advisory
http://secunia.com/advisories/43234 Vendor Advisory
http://secunia.com/advisories/43635 Vendor Advisory
http://secunia.com/advisories/43978
http://slackware.com/security/viewer.php?l=slackware-security&y=2011&m=slackware-security.485806
http://www.debian.org/security/2011/dsa-2185
http://www.exploit-db.com/exploits/16129/ Exploit
http://www.securityfocus.com/bid/46183 Exploit
http://www.vupen.com/english/advisories/2011/0617 Vendor Advisory
http://www.vupen.com/english/advisories/2011/0857
https://bugzilla.redhat.com/show_bug.cgi?id=681718 ExploitPatch

Track CVE-2011-1137 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2015-3306ProFTPD mod_copy arbitrary file read and writeThe mod_copy module in ProFTPD 1.3.5 fails to restrict the SITE CPFR and SITE CPTO commands, letting remote attackers copy arbitrary files on the ser…EPSS 97%analysed10.0CVE-2010-4221ProFTPD TELNET IAC handling stack buffer overflow allows remote code executionProFTPD before 1.3.3c contains multiple stack-based buffer overflows in the pr_netio_telnet_gets function in netio.c. A remote attacker can trigger t…EPSS 91%analysed9.8CVE-2019-12815ProFTPD mod_copy arbitrary file copy enables unauthenticated RCEmod_copy in ProFTPD up to 1.3.5b performs an arbitrary file copy without validating the source or destination, letting an unauthenticated remote clie…EPSS 58%analysed9.3CVE-2010-20103Proftpd vulnerabilityA malicious backdoor was embedded in the official ProFTPD 1.3.3c source tarball distributed between November 28 and December 2, 2010. The backdoor im…EPSS 5.1%9.0CVE-2011-4130Proftpd vulnerabilityUse-after-free vulnerability in the Response API in ProFTPD before 1.3.3g allows remote authenticated users to execute arbitrary code via vectors inv…EPSS 13%8.8CVE-2020-9273Proftpd use after free vulnerabilityIn ProFTPD 1.3.7, it is possible to corrupt the memory pool by interrupting the data transfer channel. This triggers a use-after-free in alloc_pool i…EPSS 12%8.7CVE-2026-63090Proftpd heap-based buffer overflow vulnerabilityProFTPD before 1.3.9c and 1.3.10rc3 contains a heap-based buffer overflow vulnerability in the mod_sftp module that allows authenticated low-privileg…EPSS 0.93%8.6CVE-2026-35025Proftpd link following vulnerabilityProFTPD through 1.3.9b and 1.3.10rc2 contains an access control bypass vulnerability that allows authenticated FTP users to circumvent Directory ACL …EPSS 0.51%

Source: NIST National Vulnerability Database (record CVE-2011-1137), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.