Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-1999-0368


Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto.


Published

1999-02-09T05:00:00.000

Last Modified

2025-04-03T01:03:51.193

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 10.0 (HIGH)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:C/I:C/A:C

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: COMPLETE
  • Integrity Impact: COMPLETE
  • Availability Impact: COMPLETE
Exploitability Score

10.0

Impact Score

10.0

Weaknesses
  • Type: Primary
    NVD-CWE-Other

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application proftpd_project proftpd 1.2_pre1 Yes
Application washington_university wu-ftpd 2.4.2_beta18 Yes
Application washington_university wu-ftpd 2.4.2_beta18_vr9 Yes
Operating System caldera openlinux 1.3 Yes
Operating System debian debian_linux 2.0 Yes
Operating System redhat linux 5.0 Yes
Operating System redhat linux 5.1 Yes
Operating System sco openserver 5.0 Yes
Operating System sco openserver 5.0.2 Yes
Operating System sco openserver 5.0.3 Yes
Operating System sco openserver 5.0.4 Yes
Operating System sco openserver 5.0.5 Yes
Operating System sco unixware 7.0 Yes
Operating System sco unixware 7.0.1 Yes
Operating System slackware slackware_linux 3.4 Yes
Operating System slackware slackware_linux 3.5 Yes
Operating System slackware slackware_linux 3.6 Yes

References