GlobalScape CuteFTP Long FTP Banner Buffer Overflow Vulnerability
BID:6518
Info
GlobalScape CuteFTP Long FTP Banner Buffer Overflow Vulnerability
| Bugtraq ID: | 6518 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 04 2003 12:00AM |
| Updated: | Jan 04 2003 12:00AM |
| Credit: | Vulnerability discovery credited to D4rkGr3y <[email protected]>. |
| Vulnerable: |
globalSCAPE CuteFTP 5.0 globalSCAPE CuteFTP 4.2 |
| Not Vulnerable: |
globalSCAPE CuteFTP 5.0.1 |
Discussion
GlobalScape CuteFTP Long FTP Banner Buffer Overflow Vulnerability
CuteFTP is a commercially available FTP client distributed by GlobalScape. It is available for the Microsoft Windows platform.
It has been reported that a memory corruption bug exists in CuteFTP. Under some circumstances, when an FTP client connects to a malicious FTP server it may be possible for the server to exploit a boundry condition error.
CuteFTP is a commercially available FTP client distributed by GlobalScape. It is available for the Microsoft Windows platform.
It has been reported that a memory corruption bug exists in CuteFTP. Under some circumstances, when an FTP client connects to a malicious FTP server it may be possible for the server to exploit a boundry condition error.
Exploit / POC
GlobalScape CuteFTP Long FTP Banner Buffer Overflow Vulnerability
Exploit contributed by D4rkGr3y <[email protected]>:
Exploit contributed by D4rkGr3y <[email protected]>:
Solution / Fix
GlobalScape CuteFTP Long FTP Banner Buffer Overflow Vulnerability
Solution:
This issue has been addressed in CuteFTP 5.0.1. Users should contact the vendor to obtain upgrades.
Solution:
This issue has been addressed in CuteFTP 5.0.1. Users should contact the vendor to obtain upgrades.
References
GlobalScape CuteFTP Long FTP Banner Buffer Overflow Vulnerability
References:
References:
- CuteFTP Product Page (globalSCAPE)
- CuteFTP: buffer overflow (D4rkGr3y
)