Description
Stack-based buffer overflow in the site chmod command in Serv-U FTP Server before 4.2 allows remote attackers to execute arbitrary code via a long filename.
Affected products
- SolarWinds / Serv-U File Server4.1.0.3
- SolarWinds / Serv-U File Server3.0.0.16 β 3.0.0.16
- SolarWinds / Serv-U File Server3.0.0.17 β 3.0.0.17
- SolarWinds / Serv-U File Server3.1.0.0 β 3.1.0.0
- SolarWinds / Serv-U File Server3.1.0.1 β 3.1.0.1
- SolarWinds / Serv-U File Server3.1.0.3 β 3.1.0.3
- SolarWinds / Serv-U File Server4.0.0.4 β 4.0.0.4
- SolarWinds / Serv-U File Server4.1.0.0 β 4.1.0.0
References
- MISChttps://exchange.xforce.ibmcloud.com/vulnerabilities/14931
- MISChttp://www.securityfocus.com/bid/9483
- MISChttp://securitytracker.com/id?1008841
- MISChttp://www.securityfocus.com/bid/9675
- MAILING_LISThttp://marc.info/?l=bugtraq&m=107513654005840&w=2
- MISChttp://archives.neohapsis.com/archives/bugtraq/2004-01/0249.html