Back to Database
Status published
Critical
CVE-2005-3524
Buffer overflow in the SSL-ready version of linux-ftpd (linux-ftpd-ssl) 0.17...
Vulnerability Description
Buffer overflow in the SSL-ready version of linux-ftpd (linux-ftpd-ssl) 0.17 allows remote attackers to execute arbitrary code by creating a long directory name, then executing the XPWD command.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2005-3524
Credits & Attribution
No credits recorded in the NVD database.
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/23016
- http://secunia.com/advisories/17529
- http://seclists.org/lists/fulldisclosure/2005/Nov/0140.html
- http://www.osvdb.org/20530
- http://secunia.com/advisories/17465
- http://secunia.com/advisories/17586
- http://www.vupen.com/english/advisories/2005/2330
- http://www.securityfocus.com/bid/15343
- http://www.debian.org/security/2005/dsa-896
More from linux-ftpd-ssl
View All →Affected Vendor
linux-ftpd-ssl
View all reports →Affected Software
linux-ftpd-ssl
Vulnerable Versions:
0.17
Timeline
Official Publish:
November 7th, 2005
Last Modified:
August 7th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.