Train

PDA

توجه ! این یک نسخه آرشیو شده میباشد و در این حالت شما عکسی را مشاهده نمیکنید برای مشاهده کامل متن و عکسها بر روی لینک مقابل کلیک کنید : wu-ftpd ls -W memory exhaustion


NI3
11-04-2003, 12:46 PM
Test ID: 11912
Category: FTP
Title: wu-ftpd ls -W memory exhaustion
Summary: send ls -w 1000000 -C to the remote FTP server
Description:
The FTP server does not ****** arguments to the ls command.
It is possible to consume all available memory on the machine
by sending
ls "-w 1000000 -C"
See [Only registered and activated users can see links]

Solution : Contact your vendor for a fix
Risk factor : High
Copyright: Copyright (C) 2003 Michel Arboi
Cross-Ref: Common Vulnerability Exposure (CVE) ID: CAN-2003-0853
[Only registered and activated users can see links]
Conectiva Linux advisory: CLA-2003:768
[Only registered and activated users can see links]
Conectiva Linux advisory: CLA-2003:771
[Only registered and activated users can see links]
Common Vulnerability Exposure (CVE) ID: CAN-2003-0854