CVE-2011-5164 Information

Description

Stack-based buffer overflow in VanDyke Software AbsoluteFTP 1.9.6 through 2.2.10 allows remote FTP servers to execute arbitrary code via a crafted file name in a LIST command response.

Reference

http://secunia.com/advisories/46781 http://www.exploit-db.com/exploits/18102 http://www.osvdb.org/77105 http://www.saintcorporation.com/cgi-bin/exploit_info/vandyke_absoluteftp_list_client_overflow http://www.securityfocus.com/bid/50614

Share on: