CVE-2006-1322: Buffer Overflow
Published Mar 20, 2006
·Updated
Novell Netware NWFTPD 5.06.05 allows remote attackers to cause a denial of service (ABEND) via an MDTM command that uses a long path for the target file, possibly due to a buffer overflow.
Affected Software
3 affected components
Novell Netware Ftp Server<=5.06.05
Novell Netware Ftp Server=5.07
Novell NetWare FTP Server=6.5-sp4
Remediation
Event History
Mar 20, 2006
CVE Published
10:02 PM
Mar 21, 2006
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-1322?
The severity of CVE-2006-1322 is classified as a denial of service vulnerability.
2
How do I fix CVE-2006-1322?
Fix CVE-2006-1322 by updating Novell Netware NWFTPD to version 5.07 or later.
3
What systems are affected by CVE-2006-1322?
CVE-2006-1322 affects Novell Netware FTP Server versions up to 5.06.05 and 5.07.
4
What causes the vulnerability described in CVE-2006-1322?
CVE-2006-1322 is caused by a buffer overflow that can occur through a long MDTM command path.
5
Can CVE-2006-1322 be exploited remotely?
Yes, CVE-2006-1322 can be exploited remotely by attackers sending specially crafted MDTM commands.