CVE-2019-19383: Buffer Overflow
Published Dec 3, 2019
·Updated
freeFTPd 1.0.8 has a Post-Authentication Buffer Overflow via a crafted SIZE command (this is exploitable even if logging is disabled).
Affected Software
1 affected component
freeFTPd freeFTPd=1.0.8
Event History
Dec 3, 2019
CVE Published
via MITRE·07:06 PM
Data Sourced
via MITRE·07:06 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-19383?
CVE-2019-19383 is classified as a high severity vulnerability due to its potential for exploitation via a buffer overflow.
2
How can I fix CVE-2019-19383?
To mitigate CVE-2019-19383, upgrade to a secure version of freeFTPd that is not vulnerable to this buffer overflow.
3
What type of vulnerability is CVE-2019-19383?
CVE-2019-19383 is a post-authentication buffer overflow vulnerability that can be triggered by a specially crafted SIZE command.
4
Who is affected by CVE-2019-19383?
Users of freeFTPd version 1.0.8 are specifically affected by CVE-2019-19383.
5
Can CVE-2019-19383 be exploited with logging disabled?
Yes, CVE-2019-19383 can be exploited even if logging is disabled on the affected system.