Bug#318286: FTP USER buffer overflow (CAN-2005-2239)

2005-10-08 Thread Martin Schulze
Jeroen van Wolffelaar wrote: > tags 318286 sarge > thanks > > On Thu, Jul 14, 2005 at 05:36:34PM +0300, Joey Hess wrote: > > oftpd is vulnerable to anothere security hole. This time a crafted "FTP > > USER" command can cause a crash. Since a buffer overflow is involved, > > it's possible that this

Bug#318286: FTP USER buffer overflow (CAN-2005-2239)

2005-10-08 Thread Jeroen van Wolffelaar
tags 318286 sarge thanks On Thu, Jul 14, 2005 at 05:36:34PM +0300, Joey Hess wrote: > oftpd is vulnerable to anothere security hole. This time a crafted "FTP > USER" command can cause a crash. Since a buffer overflow is involved, > it's possible that this can be used to execute arbitrary code. >

Bug#318286: FTP USER buffer overflow (CAN-2005-2239)

2005-07-14 Thread Joey Hess
Package: oftpd Severity: serious Tags: security oftpd is vulnerable to anothere security hole. This time a crafted "FTP USER" command can cause a crash. Since a buffer overflow is involved, it's possible that this can be used to execute arbitrary code. Details here: http://securitytracker.com/ale