Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Sami FTP Server User Command Buffer Overflow Vulnerability

Sami FTP Server is prone to a buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied data before storing it in a finite-sized buffer.

An attacker can exploit this issue to execute arbitrary machine code in the context of the affected server application. This likely occurs with SYSTEM-level privileges.

Sami FTP Server 2.0.1 is affected by this issue; other versions may also be affected.

UPDATE (February 15, 2008): This issue was reported again in a message to Bugtraq. The message states that 2.0.* is vulnerable, implying that the fixed version may still be affected. However, this has not been confirmed.







 

Privacy Statement
Copyright 2009, SecurityFocus