CVE
- Id
- 3070
- CVE No.
- CVE-2001-0249
- Status
- Candidate
- Description
- Heap overflow in FTP daemon in Solaris 8 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the LIST command, which uses glob to generate long strings.
- Phase
- Interim (20010911)
- Votes
- ACCEPT(5) Baker, Cole, Dik, Renaud, Ziese | MODIFY(1) Frech | NOOP(1) Wall
- Comments
- Frech> XF:ftp-glob-expansion(6332) | Dik> sun bug: 4436988 | Dik> sun bug: 4436988