Family: FTP --> Category: infos
wu-ftpd fb_realpath() off-by-one overflow Vulnerability Scan
Vulnerability Scan Summary
Checks the banner of the remote wu-ftpd server
Detailed Explanation for this Vulnerability Test
The remote Wu-FTPd server seems to be vulnerable to an off-by-one
overflow when dealing with huge directory structures.
A possible hacker may exploit this flaw to obtain a shell on this host.
*** Nessus solely relied on the banner of the remote server
*** to issue this warning, so it may be a false positive.
*** Since Wu-FTPd 2.6.3 has not been released yet and only
*** patches are available to fix this issue, this might be
*** a false positive.
Solution : Upgrade to Wu-FTPd 2.6.3 when available or apply the
patches available at http://www.wu-ftpd.org
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.