NONE · 0

CVE-2011-10029

Solar FTP Server fails to properly handle format strings passed to the USER command. When a specially crafted string containing format specifiers is sent, the server crashes due to a read access viola...

Vulnerability Description

Solar FTP Server fails to properly handle format strings passed to the USER command. When a specially crafted string containing format specifiers is sent, the server crashes due to a read access violation in the __output_1() function of sfsservice.exe. This results in a denial of service (DoS) condition.

Related Weaknesses (CWE)

References

FAQ

What is CVE-2011-10029?

CVE-2011-10029 is a documented vulnerability. Solar FTP Server fails to properly handle format strings passed to the USER command. When a specially crafted string containing format specifiers is sent, the server crashes due to a read access viola...

How severe is CVE-2011-10029?

CVSS scoring is not yet available for CVE-2011-10029. Check NVD for updates.

Is there a patch for CVE-2011-10029?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.