CVE Database
/

CVE-2003-0466

Back to search

CVE-2003-0466

Published: Aug 1, 2003

Modified: Aug 8, 2024

PUBLISHED

Description

Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to execute arbitrary code, as demonstrated in wu-ftpd 2.5.0 through 2.6.2 via commands that cause pathnames of length MAXPATHLEN+1 to trigger a buffer overflow, including (1) STOR, (2) RETR, (3) APPE, (4) DELE, (5) MKD, (6) RMD, (7) STOU, or (8) RNTO.

VendorProductVersions

n/a

n/a

affected
n/a

References

9446
third-party-advisory
x_refsource_SECUNIA
6602
vdb-entry
x_refsource_OSVDB
oval:org.mitre.oval:def:1970
vdb-entry
signature
x_refsource_OVAL
20060213 Latest wu-ftpd exploit :-s
mailing-list
x_refsource_BUGTRAQ
8315
vdb-entry
x_refsource_BID
9423
third-party-advisory
x_refsource_SECUNIA
20030731 wu-ftpd fb_realpath() off-by-one bug
mailing-list
x_refsource_BUGTRAQ
20030731 wu-ftpd fb_realpath() off-by-one bug
mailing-list
x_refsource_VULNWATCH
IMNX-2003-7+-019-01
vendor-advisory
x_refsource_IMMUNIX
RHSA-2003:246
vendor-advisory
x_refsource_REDHAT
20060214 Re: Latest wu-ftpd exploit :-s
mailing-list
x_refsource_BUGTRAQ
VU#743092
third-party-advisory
x_refsource_CERT-VN
RHSA-2003:245
vendor-advisory
x_refsource_REDHAT
SuSE-SA:2003:032
vendor-advisory
x_refsource_SUSE
1001257
vendor-advisory
x_refsource_SUNALERT
DSA-357
vendor-advisory
x_refsource_DEBIAN
1007380
vdb-entry
x_refsource_SECTRACK
MDKSA-2003:080
vendor-advisory
x_refsource_MANDRAKE
libc-realpath-offbyone-bo(12785)
vdb-entry
x_refsource_XF
FreeBSD-SA-03:08
vendor-advisory
x_refsource_FREEBSD
TLSA-2003-46
vendor-advisory
x_refsource_TURBO
9535
third-party-advisory
x_refsource_SECUNIA
9447
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now