Multiple Vendor FTP Client Side File Overwriting Vulnerability
BID:6360
Info
Multiple Vendor FTP Client Side File Overwriting Vulnerability
| Bugtraq ID: | 6360 |
| Class: | Input Validation Error |
| CVE: |
CVE-2002-1345 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 11 2002 12:00AM |
| Updated: | Feb 28 2007 09:46PM |
| Credit: | Vulnerability discovery credited to Steve Christey. |
| Vulnerable: |
Trustix Secure Linux 3.0 Trustix Secure Linux 2.2 Trustix Secure Enterprise Linux 2.0 Sun Solaris 7.0_x86 Sun Solaris 7.0 Sun Solaris 2.6_x86 Sun Solaris 2.6 Slackware Linux 10.1 Slackware Linux 10.0 Slackware Linux -current OpenBSD OpenBSD 3.0 NcFTP Software NcFTP 3.1.4 NcFTP Software NcFTP 3.1.3 NcFTP Software NcFTP 3.1.2 NcFTP Software NcFTP 3.1.1 NcFTP Software NcFTP 3.1 .0 NcFTP Software NcFTP 3.0.4 NcFTP Software NcFTP 3.0.3 NcFTP Software NcFTP 3.0.2 NcFTP Software NcFTP 3.0.1 NcFTP Software NcFTP 3.0 .0 |
| Not Vulnerable: |
University of Kansas Lynx 2.8.1 Redhat Linux 7.1 NcFTP Software NcFTP 3.1.5 NcFTP Software NcFTP 3.1.4 Microsoft Windows XP Professional SP1 Microsoft Windows XP Professional Microsoft Windows XP Home SP1 Microsoft Windows XP Home Microsoft Windows NT Workstation 4.0 SP6a Microsoft Windows NT Workstation 4.0 SP6 Microsoft Windows NT Workstation 4.0 SP5 Microsoft Windows NT Terminal Server 4.0 SP6 Microsoft Windows NT Terminal Server 4.0 SP5 Microsoft Windows NT Server 4.0 SP6a Microsoft Windows NT Server 4.0 SP6 Microsoft Windows NT Server 4.0 SP5 Microsoft Windows NT Enterprise Server 4.0 SP6a Microsoft Windows NT Enterprise Server 4.0 SP6 Microsoft Windows NT Enterprise Server 4.0 SP5 lftp lftp 2.6.2 |
Discussion
Multiple Vendor FTP Client Side File Overwriting Vulnerability
Several FTP clients distributed with various operating systems may handle NLST FTP responses in an insecure manner.
When an NLST response is received from an FTP server, RFC specifications require that FTP clients check the input to see if it contains directory information. Some FTP clients fail to properly check this information and may allow a remote FTP server to overwrite files on the client system.
Several FTP clients distributed with various operating systems may handle NLST FTP responses in an insecure manner.
When an NLST response is received from an FTP server, RFC specifications require that FTP clients check the input to see if it contains directory information. Some FTP clients fail to properly check this information and may allow a remote FTP server to overwrite files on the client system.
Exploit / POC
Multiple Vendor FTP Client Side File Overwriting Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: mailto:[email protected].
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: mailto:[email protected].
References
Multiple Vendor FTP Client Side File Overwriting Vulnerability
References:
References:
- Directory Traversal Vulnerabilities in FTP Clients ("Steven M. Christey"
)