FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

hsftp format string vulnerabilities

Affected packages
hsftp < 1.14

Details

VuXML ID 316e1c9b-671c-11d8-9aad-000a95bc6fae
Discovery 2004-02-22
Entry 2004-02-25

Ulf Härnhammar discovered a format string bug in hsftp's file listing code may allow a malicious server to cause arbitrary code execution by the client.

References

Message http://lists.debian.org/debian-security-announce/debian-security-announce-2004/msg00044.html