Back to search
CVE-2010-0625
Published: Apr 5, 2010
Modified: Aug 7, 2024
PUBLISHED
Description
Stack-based buffer overflow in NWFTPD.nlm before 5.10.01 in the FTP server in Novell NetWare 5.1 through 6.5 SP8 allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary code via a long (1) MKD, (2) RMD, (3) RNFR, or (4) DELE command.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://www.novell.com/support/viewContent.do?externalId=3238588&sliceId=1
x_refsource_CONFIRM
ADV-2010-0742
vdb-entry
x_refsource_VUPEN
20100405 ZDI-10-062: Novell Netware NWFTPD RMD/RNFR/DELE Argument Parsing Remote Code Execution Vulnerabilities
mailing-list
x_refsource_BUGTRAQ
39151
third-party-advisory
x_refsource_SECUNIA
http://www.zerodayinitiative.com/advisories/ZDI-10-062
x_refsource_MISC
https://bugzilla.novell.com/show_bug.cgi?id=569496
x_refsource_CONFIRM
20100329 {PRL} Novell Netware FTP Remote Stack Overflow
mailing-list
x_refsource_BUGTRAQ
39041
vdb-entry
x_refsource_BID
1023768
vdb-entry
x_refsource_SECTRACK
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now