General discussion

WS_FTP Pro ASCII Directory Transfer Buffer Overflow

Summary
WS_FTP Pro is "the market leader in Windows-based FTP (file transfer protocol) client software". WS_FTP Pro suffers a buffer over-run when ASCII mode directory data is passed to the client from the server, and this data exceeds 260 bytes without a terminating CR/LF.

Details
Vulnerable Systems:
* WS_FTP Pro version 8.02 and prior

Immune Systems:
* WS_FTP Pro version 8.03 or newer

http://www.securiteam.com/windowsntfocus/5PP0C1PCAO.html

Discussion is locked
Follow
Reply to: WS_FTP Pro ASCII Directory Transfer Buffer Overflow
PLEASE NOTE: Do not post advertisements, offensive materials, profanity, or personal attacks. Please remember to be considerate of other members. If you are new to the CNET Forums, please read our CNET Forums FAQ. All submitted content is subject to our Terms of Use.
Reporting: WS_FTP Pro ASCII Directory Transfer Buffer Overflow
This post has been flagged and will be reviewed by our staff. Thank you for helping us maintain CNET's great community.
Sorry, there was a problem flagging this post. Please try again now or at a later time.
If you believe this post is offensive or violates the CNET Forums' Usage policies, you can report it below (this will not automatically remove the post). Once reported, our moderators will be notified and the post will be reviewed.
Comments

CNET Forums