Marbry Software FTPServer/X Controls Server Response Buffer Overflow Vulnerability
BID:8040
Info
Marbry Software FTPServer/X Controls Server Response Buffer Overflow Vulnerability
| Bugtraq ID: | 8040 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 26 2003 12:00AM |
| Updated: | Jun 26 2003 12:00AM |
| Credit: | Discovery of this vulnerability has been credited to Carsten H. Eiram. |
| Vulnerable: |
Mollensoft Software Hyperion FTP Server 3.5.2 Mabry Software FTPServer/X 1.0.46 Mabry Software FTPServer/X 1.0.45 |
| Not Vulnerable: |
Mollensoft Software Hyperion FTP Server 3.5.3 Mabry Software FTPServer/X 1.0.47 |
Discussion
Marbry Software FTPServer/X Controls Server Response Buffer Overflow Vulnerability
Marbry Software FTPServer/X has been reported prone to a buffer overflow vulnerability when processing server responses of excessive length.
The issue presents itself, likely due to a lack of sufficient bounds checking performed by wsprintf() when copying attacker-supplied data into an internal memory buffer. The data contained in this buffer, under normal circumstances, is transmitted to the remote user as a part of an FTP server status response message.
A remote attacker may exploit this condition to trigger a persistent denial of service condition; code execution may also be possible.
It should be noted that any software that implements the Marbry Software FTPServer/X control, is likely affected by this vulnerability. It has been confirmed that this control is in use by Mollensoft(Hyperion) FTP Server. This issue is related to BID 7307 and possibly BID 6345.
Marbry Software FTPServer/X has been reported prone to a buffer overflow vulnerability when processing server responses of excessive length.
The issue presents itself, likely due to a lack of sufficient bounds checking performed by wsprintf() when copying attacker-supplied data into an internal memory buffer. The data contained in this buffer, under normal circumstances, is transmitted to the remote user as a part of an FTP server status response message.
A remote attacker may exploit this condition to trigger a persistent denial of service condition; code execution may also be possible.
It should be noted that any software that implements the Marbry Software FTPServer/X control, is likely affected by this vulnerability. It has been confirmed that this control is in use by Mollensoft(Hyperion) FTP Server. This issue is related to BID 7307 and possibly BID 6345.
Exploit / POC
Marbry Software FTPServer/X Controls Server Response Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Marbry Software FTPServer/X Controls Server Response Buffer Overflow Vulnerability
Solution:
The vendor has released an upgrade to address this issue.
Mabry Software FTPServer/X 1.0.45
Mabry Software FTPServer/X 1.0.46
Mollensoft Software Hyperion FTP Server 3.5.2
Solution:
The vendor has released an upgrade to address this issue.
Mabry Software FTPServer/X 1.0.45
-
Marby Software FTPServer/X 1.00.047
http://www.mabry.com/ftpserv/index.htm
Mabry Software FTPServer/X 1.0.46
-
Marby Software FTPServer/X 1.00.047
http://www.mabry.com/ftpserv/index.htm
Mollensoft Software Hyperion FTP Server 3.5.2
-
Mollensoft Software Hyperion FTP server v3.5
http://www.mollensoft.com/products.htm
References
Marbry Software FTPServer/X Controls Server Response Buffer Overflow Vulnerability
References:
References:
- FTPServer/X Homepage (Marby Software)