CVE-1999-0997
Summary
| CVE | CVE-1999-0997 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 1999-12-20 05:00:00 UTC |
| Updated | 2025-04-03 01:03:51 UTC |
| Description | wu-ftp with FTP conversion enabled allows an attacker to execute commands via a malformed file name that is interpreted as an argument to the program that does the conversion, e.g. tar or uncompress. |
Risk And Classification
Primary CVSS: v2.0 7.5 from [email protected]
AV:N/AC:L/Au:N/C:P/I:P/A:P
Problem Types: NVD-CWE-Other | n/a
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
PartialIntegrity
PartialAvailability
PartialAV:N/AC:L/Au:N/C:P/I:P/A:P
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Millenux Gmbh | Anonftp | 2.8.1 | All | All | All |
| Operating System | Redhat | Linux | 5.2 | All | All | All |
| Operating System | Redhat | Linux | 6.0 | All | All | All |
| Operating System | Redhat | Linux | 6.1 | All | All | All |
| Application | University Of Washington | Wu-ftpd | 2.4.2 | All | All | All |
| Application | University Of Washington | Wu-ftpd | 2.5.0 | All | All | All |
| Application | University Of Washington | Wu-ftpd | 2.6.0 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Debian -- Security Information -- DSA-377-1 wu-ftpd | af854a3a-2127-422b-91ae-364da2661108 | www.debian.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
Vendor Comments And Credit
| Organization | Published | Contributor | Statement |
|---|---|---|---|
| Red Hat | 2006-09-27 | Joshua Bressers | Red Hat does not consider CVE-1999-0997 to be a security vulnerability. The wu-ftpd process chroots itself into the target ftp directory and will only run external commands as the user logged into the ftp server. Because the process chroots itself, an attacker needs a valid login with write access to the ftp server, and even then they could only potentially execute commands as themselves. |
There are currently no legacy QID mappings associated with this CVE.