NetSarang XFTP Client 6.0149 and earlier version contains a buffer overflow vulnerability caused by improper boundary checks when copying file name from an attacker controlled FTP server. That leads attacker to execute arbitrary code by sending a crafted filename.
References
Link | Resource |
---|---|
https://www.boho.or.kr/krcert/secNoticeView.do?bulletin_writing_sequence=35160 | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: krcert
Published: 2019-10-10T14:45:24
Updated: 2019-10-10T14:45:24
Reserved: 2019-10-07T00:00:00
Link: CVE-2019-17320
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-10-10T15:15:09.357
Modified: 2019-10-16T13:28:46.540
Link: CVE-2019-17320
JSON object: View
Redhat Information
No data.