CaesarFTPD FTP Command Buffer Overflow Vulnerability
BID:2972
Info
CaesarFTPD FTP Command Buffer Overflow Vulnerability
| Bugtraq ID: | 2972 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2001-0826 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 04 2001 12:00AM |
| Updated: | Jul 11 2009 06:56AM |
| Credit: | Reported to bugtraq by ByteRage <[email protected]> on June 30,2001. The scope of this issue was extended by a followup posting from Wizdumb <[email protected]> on July 4, 2001. |
| Vulnerable: |
ACLogic CesarFTP 0.98 b |
| Not Vulnerable: | |
Discussion
CaesarFTPD FTP Command Buffer Overflow Vulnerability
CasesarFTP is a Windows FTP server from ACLogic.
By sending a long string of characters argumenting any of several FTP commands, an attacker can cause a stack overflow.
A remote user could supply a properly-structured argument to an affected command, designed to exceed the maximum length of the input buffer. The values stored in this buffer can overflow onto the stack, potentially overwriting the calling functions' return address with values that can alter the program's flow of execution.
Properly exploited, this could grant the attacker 'SYSTEM' privilege (under NT/2000) or the ability to execute arbitrary code.
CasesarFTP is a Windows FTP server from ACLogic.
By sending a long string of characters argumenting any of several FTP commands, an attacker can cause a stack overflow.
A remote user could supply a properly-structured argument to an affected command, designed to exceed the maximum length of the input buffer. The values stored in this buffer can overflow onto the stack, potentially overwriting the calling functions' return address with values that can alter the program's flow of execution.
Properly exploited, this could grant the attacker 'SYSTEM' privilege (under NT/2000) or the ability to execute arbitrary code.
Solution / Fix
CaesarFTPD FTP Command Buffer Overflow Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
CaesarFTPD FTP Command Buffer Overflow Vulnerability
References:
References: