CVE
- Id
- 3069
- CVE No.
- CVE-2001-0248
- Status
- Candidate
- Description
- Buffer overflow in FTP server in HPUX 11 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the STAT command, which uses glob to generate long strings.
- Phase
- Interim (20010911)
- Votes
- ACCEPT(5) Baker, Cole, Prosser, Renaud, Ziese | MODIFY(1) Frech | NOOP(1) Wall
- Comments
- Frech> XF:ftp-glob-expansion(6332) | Prosser> HPSBUX0107-162. Probably should change description to add the | HP-UX 10.01, 10.10, 10.20, 10.24 (VVOS), 11.04 (VVOS) and 11.11 | versions of the operating system as well. Patches for all systems | referenced in the advisory.