3Com 3CTftpSvc Filename Remote Buffer Overflow Vulnerability

3CTftpSvc is prone to a buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied data before storing it in a finite-sized buffer.

An attacker can exploit this issue to execute arbitrary code and gain unauthorized remote access to a vulnerable computer. A denial-of-service condition may arise as well.

3CTftpSvc 2.0.1 and prior versions are reported to be vulnerable. Other versions may be affected as well.


 

Privacy Statement
Copyright 2010, SecurityFocus