CVE-2003-0854

ls - Memory Corruption

Title source: llm
STIX 2.1

Description

ls in the fileutils or coreutils packages allows local users to consume a large amount of memory via a large -w value, which can be remotely exploited via applications that use ls, such as wu-ftpd.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Angelo Rosiello · cdoslinux
https://www.exploit-db.com/exploits/115

Scores

EPSS 0.0023
EPSS Percentile 46.2%

Details

Status published
Products (26)
gnu/fileutils 4.0
gnu/fileutils 4.0.36
gnu/fileutils 4.1
gnu/fileutils 4.1.6
gnu/fileutils 4.1.7
washington_university/wu-ftpd 2.4.1
washington_university/wu-ftpd 2.4.2_beta2
washington_university/wu-ftpd 2.4.2_beta18
washington_university/wu-ftpd 2.4.2_beta18_vr4
washington_university/wu-ftpd 2.4.2_beta18_vr5
... and 16 more
Published Nov 17, 2003
Tracked Since Feb 18, 2026