This application requires Javascript for optimal performance.

FTP.Client.List.Buffer.Overflow

Release Date

Jul 28, 2011

Severity

high

Impact

System compromise

Description

This indicates a possible attack against a buffer-overflow vulnerability in multiple FTP clients.

The vulnerability is caused by improper sanitizing of server response data which may lead to arbitrary code execution on vulnerable FTP client software.

Affected Products

Multiple FTP clients

Recommended Actions

Apply the latest patch for the vulnerable FTP client.

Coverage

IPS
VCM

Reference/s

http://www.corelan.be:8800/index.php/2010/10/12/death-of-an-ftp-client/

Reference: VID-24649