Red Hat Bugzilla – Bug 53629
SITE CHECKSUM violates RFC and causes client hangup or timeout
Last modified: 2007-04-18 12:37:06 EDT
From Bugzilla Helper:
User-Agent: Mozilla/5.0 (X11; U; Linux 2.4.3-20mdk i686; en-US; Galeon)
Description of problem:
According to RFC 959 or whatever, every command should be replied to.
However, if data has been transferred, SITE CHECKSUM doesn't produce a
reply. As I understand this is still unimplemented and should return an
error reply. The server doesn't freeze or anything, simply fails to produce
an answer and thusly the client freezes.
Version-Release number of selected component (if applicable):
Steps to Reproduce:
1. user + pass + whatever
2. retr or stor
3. site checksum
Actual Results: no reply, but daemon still works.
Expected Results: an error reply should be produced
A fix is IMHO straigthforward, it should be a one-line patch. I don't think
it's critical, however causes temporary freeze on a rfc-compliant client
and hence should be fixed.
I'd have written to wu-ftpd directly, their site seems to be down however.
I hope this has nothing to do with the terrorist attack and none of the
developers were injured.
Please use vsftpd, wu-ftpd is not maintained anymore.