Golden FTP Server NLST Command Remote Buffer Overflow Vulnerability

Golden FTP Server is prone to a buffer-overflow vulnerability when handling data through the NLST command.

Reportedly, passing excessive data may overflow a finite-sized internal memory buffer. A successful attack may result in memory corruption as memory adjacent to the buffer is overwritten with user-supplied data.

This issue may lead to a denial-of-service condition or the execution of arbitrary code.

Version 2.70 of Golden FTP Server is vulnerable to this issue; other versions may also be affected.


 

Privacy Statement
Copyright 2010, SecurityFocus