CVE-2014-1443: Buffer Overflow
Published May 2, 2014
·Updated
Core FTP Server 1.2 before build 515 allows remote authenticated users to obtain sensitive information (password for the previous user) via a USER command with a specific length, possibly related to an out-of-bounds read.
Affected Software
1 affected component
CoreFTP Core Ftp=1.2
Event History
May 2, 2014
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Data Sourced
via NVD·01:59 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2014-1443?
CVE-2014-1443 is classified as a medium severity vulnerability due to the potential exposure of sensitive information.
2
How do I fix CVE-2014-1443?
To resolve CVE-2014-1443, update Core FTP Server to version 1.2 build 515 or later.
3
Who is affected by CVE-2014-1443?
CVE-2014-1443 affects users of Core FTP Server version 1.2 before build 515.
4
What information can be exposed due to CVE-2014-1443?
CVE-2014-1443 can expose the password of the previous user to remote authenticated users.
5
What causes CVE-2014-1443?
CVE-2014-1443 is caused by an out-of-bounds read resulting from a USER command with a specific length.