GTKFTPD LIST Command Remote Buffer...

- AV AC AU C I A
发布: 2003-08-25
修订: 2025-04-13

The GtkFtpd LIST command routine has been reported prone to a remotely exploitable buffer overflow vulnerability. The issue presents itself in the sys_cmd.c source file, and is due to a lack of sufficient bounds checking that is performed on user-supplied data. Ultimately this issue may be leveraged by a remote attacker to influence GtkFtpd program execution flow and have arbitrary supplied instructions executed in the context of the vulnerable daemon, typically root.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息