Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2003-0466

Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to execute arbitrary code, as demonstrated in wu-ftpd 2.5.0 through 2.6.2 via commands that cause pathnames of length MAXPATHLEN+1 to trigger a buffer overflow, including (1) STOR, (2) RETR, (3) APPE, (4) DELE, (5) MKD, (6) RMD, (7) STOU, or (8) RNTO.

  • Published: Aug 27, 2003
  • Updated: May 9, 2024
  • CVE: CVE-2003-0466
  • Severity: Critical
  • Exploit:

CVSS v3:

  • Severity: Critical
  • Score: 9.8
  • AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CVSS v2:

  • Severity: High
  • Score: 10
  • AV:N/AC:L/Au:N/C:C/I:C/A:C

CWEs:

Software From Fixed in
redhat / wu_ftpd 2.6.1-16 2.6.1-16.x
sun / solaris 9.0 9.0.x
apple / mac_os_x 10.2.6 10.2.6.x
apple / mac_os_x_server 10.2.6 10.2.6.x
wuftpd / wu-ftpd 2.5.0 2.6.2.x
freebsd / freebsd 4.0 5.0.x
netbsd / netbsd 1.5 1.6.1.x
openbsd / openbsd 2.0 3.3.x