Previous articleBack to news listNext article |
Sponsored links |
Want to become one of our authors and see your work published on ALLSeek.iNFO ? |
| Crystal FTP Pro Buffer Overflow in Processing LIST Responses Lets Remote Users Execute Arbitrary Code |
|---|
Categorie: Vulnerability Posted: 2004-12-23 by ReCall Views: 392 Source: Click here | Current Rating: Not rated
|
|
| Details |
|---|
Description: A vulnerability was reported in Crystal FTP Pro. A remote user can cause arbitrary code to be executed on the target user's system.
SecuriTeam reported that a remote FTP server can supply a specially crafted response to a LIST command to trigger a buffer overflow and execute arbitrary code on the connected client. Replies containing a file list with a long file extension can trigger the flaw, as in the following type of filename:
le.AAAAAAAAAAAA...(over 250 characters)
Luca Ercoli is credited with reporting this flaw.
Impact: A remote server can cause arbitrary code to be executed on the connected target user's system.
Solution: No solution was available at the time of this entry. |
| Syndication |
|---|
Permalink Email this
The URI to TrackBack this entry is: http://allseek.info/news/trackback.php?id=1247
|
| User comments (post your comments ) |
|---|
Only registerd members can post comments and articles |
|
Previous articleBack to news listNext article |