Summary
This host is running Freefloat FTP Server and is prone to multiple buffer overflow vulnerability.
Impact
Successful exploits may allow remote attackers to execute arbitrary code on the system or cause the application to crash.
Impact Level: System/Application
Solution
No solution or patch was made available for at least one year since disclosure of this vulnerability. Likely none will be provided anymore.
General solution options are to upgrade to a newer release, disable respective features, remove the product or replace the product by another one.
Insight
The flaw is due to improper bounds checking when processing 'ACCL', 'AUTH', 'APPE', 'ALLO', 'ACCT' multiple commands with specially-crafted an overly long parameter.
Affected
FreeFloat Ftp Server Version 1.00, Other versions
may also be affected.
References
Severity
Classification
-
CVSS Base Score: 7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities
- DesignWorks Professional '.cct' File BOF Vulnerability
- Adobe Audition '.ses' Multiple Buffer Overflow Vulnerabilities (Windows)
- Adobe Reader '/Registry' and '/Ordering' Buffer Overflow Vulnerability (Win)
- Attachmate Reflection FTP Client LIST Command Remote Heap Buffer Overflow Vulnerability
- Buffer Overflow Vulnerability in Adobe Reader (Linux)