← Back

CVE-2001-0247

nvd nist
Published: Jun 18, 2001Modified: Apr 16, 2026

JSON object

Loading...
10.0
Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 10.0 / Impact: 10.0
Source: NVD

Description

Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern string containing a {} sequence, as seen in (1) g_opendir, (2) g_lstat, (3) g_stat, and (4) the glob0 buffer as used in the glob functions glob2 and glob3.

Affected (51)

Products: Mit: Kerberos 5 · Sgi: Irix · Freebsd: Freebsd · +2 more
Show all products
1 product
Kerberos 5
1 product
Irix
1 product
Freebsd
1 product
Netbsd
1 product
Openbsd
Configuration A
17 vulnerable
Vulnerable SoftwareAffected Versions
Mit
Version 1.1.1
Version 1.2.1
Version 1.2.2
Version 1.2
Sgi
Version 6.1
Version 6.5.10
Version 6.5.11
Version 6.5.1
Version 6.5.2m
Version 6.5.3
Version 6.5.3f
Version 6.5.3m
Version 6.5.4
Version 6.5.5
Version 6.5.6
Version 6.5.7
Version 6.5.8
Configuration B
34 vulnerable
Vulnerable SoftwareAffected Versions
Freebsd
Version 2.2.2
Version 2.2.3
Version 2.2.4
Version 2.2.5
Version 2.2.6
Version 2.2.8
Version 2.2
Version 3.0
Version 3.1
Version 3.2
Version 3.3
Version 3.4
Version 3.5.1
Version 3.5
Version 4.0
Version 4.1.1
Version 4.1
Version 4.2
Netbsd
Version 1.2.1
Version 1.3.1
Version 1.3.2
Version 1.3.3
Version 1.3
Version 1.4.1
Version 1.4.2
Version 1.4.3
Version 1.4
Version 1.5
Openbsd
Version 2.3
Version 2.4
Version 2.5
Version 2.6
Version 2.7
Version 2.8

References (14)

ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-018.txt.asc (unsafe URL)
Source: cve@mitre.org
Patch
ftp://patches.sgi.com/support/free/security/advisories/20010802-01-P (unsafe URL)
Source: cve@mitre.org
Source: cve@mitre.org
PatchThird Party AdvisoryUS Government Resource
Source: cve@mitre.org
ExploitPatchVendor Advisory
ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-018.txt.asc (unsafe URL)
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
ftp://patches.sgi.com/support/free/security/advisories/20010802-01-P (unsafe URL)
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.