-
Buffer-overrun vulnerability in WS_FTP Pro or ( get Filezilla cause its better )
John Layman discovered that a buffer-overrun vulnerability in WS_FTP Pro 8.02 and earlier can cause arbitrary code execution on the vulnerable system. If an attacker sends an ASCII mode directory data file that exceeds 260 bytes, and the file isn't terminated by a carriage return/line feed (CRLF), a buffer overrun results. WS_FTP Pro 8.03 isn't vulnerable to the buffer-overrun condition, so users should consider upgrading to version 8.03.
SOURCE
-
-
03-25-2004, 05:19 PM
Software & Hardware -
#2
Poster
SH thanks for the info and the heads up. I updated the software and I also downloaded FileZilla, that program is TIGHT. I see myself switch over as soon as I get all my ftp sites configured in FileZilla
-
-
03-25-2004, 07:06 PM
Software & Hardware -
#3
Ð3ƒμ|\|(7
Interesting.
This is not their 1st flaw.
-
-
03-25-2004, 07:29 PM
Software & Hardware -
#4
hi shn
i hope u enjoy'd had a good one.
I tried sayin' earlier everything post i try today i'm gettin anti spam crap.So fuck it.
-
-
03-26-2004, 12:43 AM
Software & Hardware -
#5
Poster
well that migh explain somethings .
but anyways i updated long ago...
-
-
03-26-2004, 01:30 AM
Software & Hardware -
#6
Buffer overflows are the first thing they teach you in a programming class.
And get LeechFTP, it owns FileZilla.
-
-
03-26-2004, 01:34 AM
Software & Hardware -
#7
Poster
i never got a programming class,all i learned was purely from mysqelf (and with google)
-
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules
Bookmarks