|
Sami FTP Server User Command Buffer Overflow Vulnerability
Sami FTP Server is prone to a buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied data before storing it in a finite-sized buffer. An attacker can exploit this issue to execute arbitrary machine code in the context of the affected server application. This likely occurs with SYSTEM-level privileges. Sami FTP Server 2.0.1 is affected by this issue; other versions may also be affected. UPDATE (February 15, 2008): This issue was reported again in a message to Bugtraq. The message states that 2.0.* is vulnerable, implying that the fixed version may still be affected. However, this has not been confirmed. |
|
|
Privacy Statement |