ProFTPD versions before 1.3.6b and various pre-release versions (1.3.7rc before 1.3.7rc2) are vulnerable to remote unauthenticated denial of service. The vulnerability occurs when processing overly long commands, causing an infinite loop in a child process that can crash the server.
id: CVE-2019-18217
info:
name: ProFTPD < 1.3.6b - Remote Unauthenticated DoS
author: pussycat0x
...