GuildFTPD is a free Windows-based ftp server. A buffer overflow condition exists in GuildFTPD that may allow a remote user to execute arbitrary code/commands on a target host running the server. The overflow occurs when a user authenticates with GuildFTPD supplying a password of excessive length. The password is copied into an internal buffer without bounds checking. If this argument exceeds 32 bytes in length, the extraneous data overwrites neighboring memory.
GuildFTPD is a free Windows-based ftp server. A buffer overflow condition exists in GuildFTPD that may allow a remote user to execute arbitrary code/commands on a target host running the server. The overflow occurs when a user authenticates with GuildFTPD supplying a password of excessive length. The password is copied into an internal buffer without bounds checking. If this argument exceeds 32 bytes in length, the extraneous data overwrites neighboring memory.