FileZilla FTP server before 0.9.6, when using MODE Z (zlib compression), allows remote attackers to cause a denial of service (infinite loop) via certain file uploads or directory listings.
http://www.securityfocus.com/bid/12865
http://sourceforge.net/project/shownotes.php?group_id=21558&release_id=314473