2.1
CVSSv2

CVE-2003-0854

Published: 17/11/2003 Updated: 11/10/2017
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 215
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

ls in the fileutils or coreutils packages allows local users to consume a large amount of memory via a large -w value, which can be remotely exploited via applications that use ls, such as wu-ftpd.

Vulnerable Product Search on Vulmon Subscribe to Product

washington university wu-ftpd 2.4.2_beta18

washington university wu-ftpd 2.4.2_beta18_vr10

washington university wu-ftpd 2.4.2_beta18_vr5

washington university wu-ftpd 2.4.2_beta18_vr6

washington university wu-ftpd 2.4.2_beta18_vr7

washington university wu-ftpd 2.6.0

washington university wu-ftpd 2.6.1

gnu fileutils 4.1.7

washington university wu-ftpd 2.4.1

washington university wu-ftpd 2.4.2_beta18_vr15

washington university wu-ftpd 2.4.2_beta18_vr4

washington university wu-ftpd 2.4.2_vr17

washington university wu-ftpd 2.5.0

gnu fileutils 4.0

gnu fileutils 4.0.36

washington university wu-ftpd 2.4.2_beta18_vr11

washington university wu-ftpd 2.4.2_beta18_vr12

washington university wu-ftpd 2.4.2_beta18_vr8

washington university wu-ftpd 2.4.2_beta18_vr9

washington university wu-ftpd 2.6.2

gnu fileutils 4.1

gnu fileutils 4.1.6

washington university wu-ftpd 2.4.2_beta18_vr13

washington university wu-ftpd 2.4.2_beta18_vr14

washington university wu-ftpd 2.4.2_beta2

washington university wu-ftpd 2.4.2_vr16

Exploits

/* * (c) Rosiello Security * * Copyright Rosiello Security 2003 * All Rights reserved * * Tested on Red Hat 90 * * Author: Angelo Rosiello * Mail : angelo rosiello org * This software is only for educational purpose * Do not use it against machines different from yours * Respect law * */ #include <stdioh> #include <sys/types ...