Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

ACLogic CesarFTP Multiple Commands Remote Buffer Overflow Vulnerability

CesarFTP is prone to a buffer-overflow vulnerability when handling data through the MKD command.
Reportedly, passing excessive data may overflow a finite-sized internal memory buffer. A successful attack may result in memory corruption as memory adjacent to the buffer is overwritten with user-supplied data.

This issue may lead to a denial-of-service condition or to the execution of arbitrary code.

CesarFTP 0.99g is vulnerable; other versions may also be affected.







 

Privacy Statement
Copyright 2008, SecurityFocus