FTP: SlimFTPd LIST Concatenation Overflow

This signature detects attempts to exploit a known vulnerability against SlimFTPd. A successful attack allows attackers to execute arbitrary machine code with the privileges of the affected FTP server.

Extended Description

A remote buffer overflow vulnerability affects WhitSoft Development SlimFTPd. The problem presents itself when an authenticated user issues a command with excessive string values as parameters. An attacker can leverage this issue to execute arbitrary machine code with the privileges of the affected FTP server, facilitating unauthorized access to the vulnerable computer.

Affected Products

Whitsoft slimftpd

References

BugTraq: 14339

CVE: CVE-2005-2373

Short Name
FTP:COMMAND:SLIMFTP-LIST
Severity
Major
Recommended
False
Recommended Action
Drop
Category
FTP
Keywords
CVE-2005-2373 Concatenation LIST Overflow SlimFTPd bid:14339
Release Date
05/04/2010
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Unknown
Vendors

Whitsoft

CVSS Score

7.2

Found a potential security threat?