20040223 Re: [SECURITY] [DSA 447-1] New hsftp packages fix format string vulnerabilitymailing list
http://lists.grok.org.uk/pipermail/full-disclosure/2004-February/017737.html CVE-2004-0159
Samhain Labs 1.x - HSFTP Remote Format String
Record summary
CVE-2004-0159 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
Format string vulnerability in hsftp 1.11 allows remote authenticated users to cause a denial of service and possibly execute arbitrary code via file names containing format string characters that are not properly handled when executing an "ls" command.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBSamhain Labs 1.x - HSFTP Remote Format StringExploitDB exploitby priest@priestmaster.orgNot analyzed1 file
References
64029vdb entry
http://www.osvdb.org/4029 9715vdb entry
http://www.securityfocus.com/bid/9715 hsftp-format-string(15276)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/15276 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2004-0159 DSA-447Vendor advisory
https://www.debian.org/security/2004/dsa-447