Buffer overflow in TrollFTPD 1.26 and earlier allows local users to execute arbitrary code by creating a series of deeply nested directories with long names, then running the ls -R (recursive) command.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Trollftpd | Trolltech | 1.17 (including) | 1.17 (including) |
Trollftpd | Trolltech | 1.18 (including) | 1.18 (including) |
Trollftpd | Trolltech | 1.19 (including) | 1.19 (including) |
Trollftpd | Trolltech | 1.20 (including) | 1.20 (including) |
Trollftpd | Trolltech | 1.21 (including) | 1.21 (including) |
Trollftpd | Trolltech | 1.22 (including) | 1.22 (including) |
Trollftpd | Trolltech | 1.23 (including) | 1.23 (including) |
Trollftpd | Trolltech | 1.24 (including) | 1.24 (including) |
Trollftpd | Trolltech | 1.25 (including) | 1.25 (including) |
Trollftpd | Trolltech | 1.26 (including) | 1.26 (including) |