CVE Vulnerabilities

CVE-2007-3961

Published: Jul 25, 2007 | Modified: Nov 15, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
LOW

Off-by-one error in the fsp_readdir_r function in fsplib.c in fsplib before 0.9 allows remote attackers to cause a denial of service via a directory entry whose length is exactly MAXNAMELEN, which prevents a terminating null byte from being added.

Affected Software

Name Vendor Start Version End Version
C_library Fsp * 0.7 (including)
Gftp Ubuntu dapper *
Gftp Ubuntu edgy *
Gftp Ubuntu feisty *
Gftp Ubuntu gutsy *
Gftp Ubuntu upstream *

References