Bugtraq mailing list archives

Re: Pro/wuFTPD DoS


From: chris () CYBERNET CO NZ (Chris Wedgwood)
Date: Sun, 21 Feb 1999 11:01:07 +1300


On Fri, Feb 19, 1999 at 07:56:59PM +0500, CyberPsychotic wrote:

I think I will probably write it again, since I don't I have it saved
somewhere.  There's nothing fascinating actually. This seem to be a heap
buffer overflow, which smashes pointers to the dirnames (thus you could
probably get access to files outsite chrooted envinronment):

Could someone please clue me in on how this might be so, assuming
*ftpd correctly chroot's itself then relinquishes permissions?



-cw



Current thread: