MMFTPD SysLog Format String Vulnerability
BID:4990
Info
MMFTPD SysLog Format String Vulnerability
| Bugtraq ID: | 4990 |
| Class: | Input Validation Error |
| CVE: |
CVE-2002-0925 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 11 2002 12:00AM |
| Updated: | Jul 11 2009 01:56PM |
| Credit: | Vulnerability discovery credited to Guillaume Pelat. |
| Vulnerable: |
Matthew Mondor mmftpd 0.0.7 |
| Not Vulnerable: |
Matthew Mondor mmftpd 0.0.8 |
Discussion
MMFTPD SysLog Format String Vulnerability
mmftpd is a freely available, open source FTP server for Linux operating systems.
Due to improper use of the syslog call, a problem exists which could make the execution of arbitrary code possible. A syslog call in the program which logs user-supplied information could be exploited to print to specified places in memory, including potentially overwriting the return address of a function and executing arbitrary code.
mmftpd is a freely available, open source FTP server for Linux operating systems.
Due to improper use of the syslog call, a problem exists which could make the execution of arbitrary code possible. A syslog call in the program which logs user-supplied information could be exploited to print to specified places in memory, including potentially overwriting the return address of a function and executing arbitrary code.
Solution / Fix
MMFTPD SysLog Format String Vulnerability
Solution:
Update available:
Matthew Mondor mmftpd 0.0.7
Solution:
Update available:
Matthew Mondor mmftpd 0.0.7
-
Matthew Mondor mmftpd-0.0.8.tar.gz
http://mmondor.gobot.ca/software/linux/mmftpd-0.0.8.tar.gz
References
MMFTPD SysLog Format String Vulnerability
References:
References:
- mmftpd Changelog (Matthew Mondor)
- Software Page (Matthew Mondor)