CVE-2004-1135: Buffer Overflow
Published Dec 8, 2004
·Updated
Multiple buffer overflows in WSFTP Server 5.03 2004.10.14 allow remote attackers to cause a denial of service (service crash) via long (1) SITE, (2) XMKD, (3) MKD, and (4) RNFR commands.
Affected Software
1 affected component
Ipswitch Ws Ftp Server=5.03
Event History
Dec 8, 2004
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1135?
CVE-2004-1135 has a medium severity rating as it can lead to a denial of service by crashing the WS_FTP Server.
2
How do I fix CVE-2004-1135?
To fix CVE-2004-1135, upgrade WS_FTP Server to a version later than 5.03 that addresses these buffer overflow vulnerabilities.
3
Which versions of WS_FTP Server are affected by CVE-2004-1135?
CVE-2004-1135 specifically affects WS_FTP Server version 5.03.
4
What types of commands can trigger the vulnerability in CVE-2004-1135?
Commands such as SITE, XMKD, MKD, and RNFR can trigger the buffer overflow vulnerability in CVE-2004-1135.
5
What impact does CVE-2004-1135 have on WS_FTP Server operations?
CVE-2004-1135 can lead to service disruptions as it allows remote attackers to crash the WS_FTP Server.