Stack-based buffer overflow in the pr_ctrls_recv_request function in ctrls.c in the mod_ctrls module in ProFTPD before 1.3.1rc1 allows local users to execute arbitrary code via a large reqarglen length value.
| Software | From | Fixed in |
|---|---|---|
| proftpd_project / proftpd | 1.3.0 | 1.3.0.x |
| proftpd_project / proftpd | 1.3.0a | 1.3.0a.x |