Buffer overflow in sys_cmd.c for gtkftpd 1.0.4 and earlier allows remote attackers to execute arbitrary code by creating long directory names and listing them with a LIST command.
| Software | From | Fixed in |
|---|---|---|
| gtkftpd / gtkftp | 1.0.2 | 1.0.2.x |
| gtkftpd / gtkftp | 1.0.3 | 1.0.3.x |
| gtkftpd / gtkftp | 1.0.4 | 1.0.4.x |