CVE-1999-0878: Buffer Overflow
Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via MAPPINGCHDIR.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
wu-ftpdfrom your environment.Uninstall wu-ftpd if the FTP service is not required to eliminate the vulnerable software.
- Remove
Remove
beroftpdfrom your environment.Uninstall beroftpd if the FTP service is not required to eliminate the vulnerable software (listed as affected).
- Configuration
Disable MAPPING_CHDIR in WU-FTPD to mitigate the buffer overflow that allows remote attackers to gain root privileges via MAPPING_CHDIR.
WU-FTPD MAPPING_CHDIR = disabled - Compensating control
Restrict network access to FTP services (e.g., block or limit port 21 at the firewall, or allow only trusted IP addresses) to prevent remote exploitation until a fix is available.
- Operational
Stop or disable the FTP service on affected hosts until fixes or mitigations are applied to prevent remote exploitation.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0878?
CVE-1999-0878 is considered a critical vulnerability that allows remote attackers to gain root privileges.
How do I fix CVE-1999-0878?
To fix CVE-1999-0878, upgrade to the latest version of WU-FTPD or affected software that patches the buffer overflow vulnerability.
What software is affected by CVE-1999-0878?
CVE-1999-0878 affects various versions of WU-FTPD and the beroftpd FTP server.
What type of vulnerability is CVE-1999-0878?
CVE-1999-0878 is a buffer overflow vulnerability that exploits the MAPPING_CHDIR function.
Can CVE-1999-0878 allow full server compromise?
Yes, CVE-1999-0878 can allow remote attackers to execute arbitrary code with root privileges, potentially compromising the entire server.