ACLogic CesarFTP Buffer Overflow Vulnerability
BID:11070
Info
ACLogic CesarFTP Buffer Overflow Vulnerability
| Bugtraq ID: | 11070 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 30 2004 12:00AM |
| Updated: | Aug 30 2004 12:00AM |
| Credit: | lion <[email protected]> disclosed this vulnerability. |
| Vulnerable: |
ACLogic CesarFTP 0.99 g ACLogic CesarFTP 0.99 e ACLogic CesarFTP 0.98 b |
| Not Vulnerable: | |
Discussion
ACLogic CesarFTP Buffer Overflow Vulnerability
It is reported that CesarFTP is susceptible to a buffer overflow vulnerability. This vulnerability is due to a lack of proper bounds checking in the application. This leads to a buffer of fixed size being overrun, corrupting the contents of adjacent memory regions.
It is reported that this vulnerability is exploitable before authenticating to the FTP server, allowing anonymous attackers to either crash the FTP server, or possibly to execute arbitrary code in the context of the FTP server process.
It is reported that CesarFTP is susceptible to a buffer overflow vulnerability. This vulnerability is due to a lack of proper bounds checking in the application. This leads to a buffer of fixed size being overrun, corrupting the contents of adjacent memory regions.
It is reported that this vulnerability is exploitable before authenticating to the FTP server, allowing anonymous attackers to either crash the FTP server, or possibly to execute arbitrary code in the context of the FTP server process.
Exploit / POC
ACLogic CesarFTP Buffer Overflow Vulnerability
A proof of concept exploit sufficient to crash the affected application was provided by <[email protected]>:
A proof of concept exploit sufficient to crash the affected application was provided by <[email protected]>:
Solution / Fix
ACLogic CesarFTP Buffer Overflow Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
ACLogic CesarFTP Buffer Overflow Vulnerability
References:
References:
- Cesar FTP Server Long Command DoS Exploit (CNHonker)
- CesarFTP Homepage (ACLogic)