FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

smbftpd -- format string vulnerability

Affected packages
smbftpd < 0.96

Details

VuXML ID b2571f88-a867-11dc-a6f0-00a0cce0781e
Discovery 2007-10-01
Entry 2007-12-12

Secunia reports:

Format string vulnerability in the SMBDirList function in dirlist.c in SmbFTPD 0.96 allows remote attackers to execute arbitrary code via format string specifiers in a directory name.

References

CVE Name CVE-2007-5184
URL http://secunia.com/advisories/27014/
URL http://sourceforge.net/project/shownotes.php?release_id=543077