CVE Vulnerabilities

CVE-2006-6563

Published: Dec 15, 2006 | Modified: Oct 17, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.6 MEDIUM
AV:L/AC:M/Au:S/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Stack-based buffer overflow in the pr_ctrls_recv_request function in ctrls.c in the mod_ctrls module in ProFTPD before 1.3.1rc1 allows local users to execute arbitrary code via a large reqarglen length value.

Affected Software

Name Vendor Start Version End Version
Proftpd Proftpd_project 1.3.0 (including) 1.3.0 (including)
Proftpd Proftpd_project 1.3.0a (including) 1.3.0a (including)
Proftpd Ubuntu dapper *
Proftpd Ubuntu edgy *
Proftpd-dfsg Ubuntu devel *
Proftpd-dfsg Ubuntu feisty *
Proftpd-dfsg Ubuntu gutsy *
Proftpd-dfsg Ubuntu hardy *
Proftpd-dfsg Ubuntu intrepid *
Proftpd-dfsg Ubuntu jaunty *
Proftpd-dfsg Ubuntu karmic *

References