Buffer overflow in TrollFTPD 1.26 and earlier allows local users to execute arbitrary code by creating a series of deeply nested directories with long names, then running the ls -R (recursive) command.
2001-08-13T04:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 10.0 (HIGH)
AV:N/AC:L/Au:N/C:C/I:C/A:C
10.0
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | trolltech | trollftpd | 1.17 | Yes |
Application | trolltech | trollftpd | 1.18 | Yes |
Application | trolltech | trollftpd | 1.19 | Yes |
Application | trolltech | trollftpd | 1.20 | Yes |
Application | trolltech | trollftpd | 1.21 | Yes |
Application | trolltech | trollftpd | 1.22 | Yes |
Application | trolltech | trollftpd | 1.23 | Yes |
Application | trolltech | trollftpd | 1.24 | Yes |
Application | trolltech | trollftpd | 1.25 | Yes |
Application | trolltech | trollftpd | 1.26 | Yes |