Linux-FTPD-SSL FTP Server Remote Buffer Overflow Vulnerability
BID:15343
Info
Linux-FTPD-SSL FTP Server Remote Buffer Overflow Vulnerability
| Bugtraq ID: | 15343 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2005-3524 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 07 2005 12:00AM |
| Updated: | Nov 07 2005 12:00AM |
| Credit: | This issue was discovered by kcope. |
| Vulnerable: |
Gentoo Linux Debian Linux 3.1 sparc Debian Linux 3.1 s/390 Debian Linux 3.1 ppc Debian Linux 3.1 mipsel Debian Linux 3.1 mips Debian Linux 3.1 m68k Debian Linux 3.1 ia-64 Debian Linux 3.1 ia-32 Debian Linux 3.1 hppa Debian Linux 3.1 arm Debian Linux 3.1 amd64 Debian Linux 3.1 alpha Debian Linux 3.1 Christoph Martin linux-ftpd-ssl 0.17 |
| Not Vulnerable: | |
Discussion
Linux-FTPD-SSL FTP Server Remote Buffer Overflow Vulnerability
Linux-FTPD-SSL FTP Server is susceptible to a remote buffer overflow vulnerability. This issue is due to a failure of the application to properly bounds check user-supplied input data prior to copying it to an insufficiently sized memory buffer.
This vulnerability allows remote attackers to execute arbitrary machine code in the context of the vulnerable server application, typically with superuser privileges.
Linux-FTPD-SSL FTP Server is susceptible to a remote buffer overflow vulnerability. This issue is due to a failure of the application to properly bounds check user-supplied input data prior to copying it to an insufficiently sized memory buffer.
This vulnerability allows remote attackers to execute arbitrary machine code in the context of the vulnerable server application, typically with superuser privileges.
Exploit / POC
Linux-FTPD-SSL FTP Server Remote Buffer Overflow Vulnerability
An exploit has been provided by kcope:
An exploit has been provided by kcope:
Solution / Fix
Linux-FTPD-SSL FTP Server Remote Buffer Overflow Vulnerability
Solution:
Gentoo has released advisory GLSA 200511-11 and fixes to address this issue. To obtain fixes, execute the following commands:
emerge --sync
emerge --ask --oneshot --verbose ">=net-ftp/ftpd-0.17-r3"
Debian Linux has released security advisory DSA 896-1 addressing this issue. Users are advised to see the referenced advisory for details on obtaining and applying the appropriate updates.
--
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Christoph Martin linux-ftpd-ssl 0.17
Solution:
Gentoo has released advisory GLSA 200511-11 and fixes to address this issue. To obtain fixes, execute the following commands:
emerge --sync
emerge --ask --oneshot --verbose ">=net-ftp/ftpd-0.17-r3"
Debian Linux has released security advisory DSA 896-1 addressing this issue. Users are advised to see the referenced advisory for details on obtaining and applying the appropriate updates.
--
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Christoph Martin linux-ftpd-ssl 0.17
-
Debian ftpd-ssl_0.17.18+0.3-3sarge1_alpha.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/l/linux-ftpd-ssl/ftpd-ssl _0.17.18+0.3-3sarge1_alpha.deb -
Debian ftpd-ssl_0.17.18+0.3-3sarge1_amd64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/l/linux-ftpd-ssl/ftpd-ssl _0.17.18+0.3-3sarge1_amd64.deb -
Debian ftpd-ssl_0.17.18+0.3-3sarge1_arm.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/l/linux-ftpd-ssl/ftpd-ssl _0.17.18+0.3-3sarge1_arm.deb -
Debian ftpd-ssl_0.17.18+0.3-3sarge1_hppa.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/l/linux-ftpd-ssl/ftpd-ssl _0.17.18+0.3-3sarge1_hppa.deb -
Debian ftpd-ssl_0.17.18+0.3-3sarge1_i386.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/l/linux-ftpd-ssl/ftpd-ssl _0.17.18+0.3-3sarge1_i386.deb -
Debian ftpd-ssl_0.17.18+0.3-3sarge1_ia64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/l/linux-ftpd-ssl/ftpd-ssl _0.17.18+0.3-3sarge1_ia64.deb -
Debian ftpd-ssl_0.17.18+0.3-3sarge1_m68k.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/l/linux-ftpd-ssl/ftpd-ssl _0.17.18+0.3-3sarge1_m68k.deb -
Debian ftpd-ssl_0.17.18+0.3-3sarge1_mips.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/l/linux-ftpd-ssl/ftpd-ssl _0.17.18+0.3-3sarge1_mips.deb -
Debian ftpd-ssl_0.17.18+0.3-3sarge1_mipsel.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/l/linux-ftpd-ssl/ftpd-ssl _0.17.18+0.3-3sarge1_mipsel.deb -
Debian ftpd-ssl_0.17.18+0.3-3sarge1_powerpc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/l/linux-ftpd-ssl/ftpd-ssl _0.17.18+0.3-3sarge1_powerpc.deb -
Debian ftpd-ssl_0.17.18+0.3-3sarge1_s390.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/l/linux-ftpd-ssl/ftpd-ssl _0.17.18+0.3-3sarge1_s390.deb -
Debian ftpd-ssl_0.17.18+0.3-3sarge1_sparc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/l/linux-ftpd-ssl/ftpd-ssl _0.17.18+0.3-3sarge1_sparc.deb
References
Linux-FTPD-SSL FTP Server Remote Buffer Overflow Vulnerability
References:
References:
- linux-ftpd-ssl Project Page (Christoph Martin)