多个供应商ftpd setproctitle()格式字符串漏洞

漏洞信息详情

多个供应商ftpd setproctitle()格式字符串漏洞

漏洞简介

例如OpenBSD ftpd,NetBSD ftpd,ProFTPd和Opieftpd的FTP服务器不能正确净化在setproctitle函数(有时被称作set_proc_title)中被使用的不可信格式字符串,远程攻击者可以导致服务拒绝或者执行任意命令。

漏洞公告

OpenBSD ftpd:
A patch is available at
http://www.openbsd.org/errata.html#ftpd
ProFTPD:
Upgrade to ProFTPD 1.2.0 when it is available.
Manual patch:
Replace the call to setproctitle() in the set_proc_title() with a properly used format string.
Replace:
setproctitle(statbuf);
with
setproctitle(“%s”, statbuf);
wu-ftpd – upgrade to version 2.6.1:
ftp://ftp.wu-ftpd.org/pub/wu-ftpd/wu-ftpd-2.6.1.tar.gz
ftp://ftp.wu-ftpd.org/pub/wu-ftpd/wu-ftpd-2.6.1.tar.gz.asc
ftp://ftp.wu-ftpd.org/pub/wu-ftpd/wu-ftpd-2.6.1.tar.Z
ftp://ftp.wu-ftpd.org/pub/wu-ftpd/wu-ftpd-2.6.1.tar.Z.asc
SuSE Linux – updates are available.
http://suse.de/de/support/security/suse_security_announce_571.txt
Debian:
This problem has been corrected in netstd 3.07-7slink.4 for Debian 2.1 (slink) and in ftpd 0.11-8potato.1 for Debian 2.2 (potato). We recommend upgrading your ftpd immediately.
Fixed in: Debian 2.1 (slink):
Source:
http://security.debian.org/dists/slink/updates/source/netstd_3.07-7slink.4.diff.gz
http://security.debian.org/dists/slink/updates/source/netstd_3.07-7slink.4.dsc
http://security.debian.org/dists/slink/updates/source/netstd_3.07.orig.tar.gz
alpha:
http://security.debian.org/dists/slink/updates/binary-alpha/netstd_3.07-7slink.4_alpha.deb
i386:
http://security.debian.org/dists/slink/updates/binary-i386/netstd_3.07-7slink.4_i386.deb
m68k:
http://security.debian.org/dists/slink/updates/binary-m68k/netstd_3.07-7slink.4_m68k.deb
sparc:
http://security.debian.org/dists/slink/updates/binary-sparc/netstd_3.07-7slink.4_sparc.deb
Debian 2.2 (potato):
Source:
http://security.debian.org/dists/potato/updates/main/source/linux-ftpd_0.11-8potato.1.diff.gz
http://security.debian.org/dists/potato/updates/main/source/linux-ftpd_0.11-8potato.1.dsc
http://security.debian.org/dists/potato/updates/main/source/linux-ftpd_0.11.orig.tar.gz
arm:
http://security.debian.org/dists/potato/updates/main/binary-arm/ftpd_0.11-8potato.1_arm.deb
i386:
http://security.debian.org/dists/potato/updates/main/binary-i386/ftpd_0.11-8potato.1_i386.deb
sparc:
http://security.debian.org/dists/potato/updates/main/binary-sparc/ftpd_0.11-8potato.1_sparc.deb
ProFTPD Project ProFTPD 1.2 pre4

ProFTPD Project ProFTPD 1.2 pre5

ProFTPD Project ProFTPD 1.2 pre8

ProFTPD Project ProFTPD 1.2 pre6

ProFTPD Project ProFTPD 1.2 pre1

参考网址

来源:CERT/CC Advisory: CA-2000-13
名称: CA-2000-13
链接:http://www.cert.org/advisories/CA-2000-13.html

来源: BID
名称: 1438
链接:http://www.securityfocus.com/bid/1438

来源: BID
名称: 1425
链接:http://www.securityfocus.com/bid/1425

来源: BUGTRAQ
名称: 20000710 opieftpd setproctitle() patches
链接:http://archives.neohapsis.com/archives/bugtraq/2000-07/0121.html

来源: BUGTRAQ
名称: 20000706 ftpd and setproctitle()
链接:http://archives.neohapsis.com/archives/bugtraq/2000-07/0061.html

来源: BUGTRAQ
名称: 20000705 proftp advisory
链接:http://archives.neohapsis.com/archives/bugtraq/2000-07/0031.html

来源: NETBSD
名称: NetBSD-SA2000-009
链接:ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-009.txt.asc

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享