BlackKite: Home
Menu

PUBLISHED DATE: June 18, 2001CVE-2001-0247:
Buffer Overflow Vulnerability

CVSS:
10
EPSS:
3517.00%
Exploitability:
10
In KEV:
No
Description

Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern string containing a {} sequence, as seen in (1) g_opendir, (2) g_lstat, (3) g_stat, and (4) the glob0 buffer as used in the glob functions glob2 and glob3.

Products
Questions to Ask Vendors
  1. Can you confirm whether your systems are affected by CVE-2001-0247, and if so, what steps are you currently taking to mitigate this vulnerability?
  2. What is your estimated timeline for fully resolving CVE-2001-0247 in your products or services, and how will you communicate updates on this issue to us as your customer?
Recommended Actions
References

Ready to get results you can trust?