First published: Thu Sep 25 2003(Updated: )
ProFTPD 1.2.7 through 1.2.9rc2 does not properly translate newline characters when transferring files in ASCII mode, which allows remote attackers to execute arbitrary code via a buffer overflow using certain files.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ProFTPD | =1.2.7 | |
ProFTPD | =1.2.7_rc1 | |
ProFTPD | =1.2.7_rc2 | |
ProFTPD | =1.2.7_rc3 | |
ProFTPD | =1.2.8 | |
ProFTPD | =1.2.8_rc1 | |
ProFTPD | =1.2.8_rc2 | |
ProFTPD | =1.2.9_rc1 | |
ProFTPD | =1.2.9_rc2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2003-0831 is considered to be a critical vulnerability due to its potential to allow remote code execution.
To fix CVE-2003-0831, upgrade ProFTPD to version 1.2.10 or later.
Versions of ProFTPD from 1.2.7 through 1.2.9rc2 are affected by CVE-2003-0831.
Yes, CVE-2003-0831 can potentially lead to unauthorized access through remote code execution.
CVE-2003-0831 is associated with buffer overflow attacks that exploit newline character translation issues.