Microsoft Windows FTP Client Input Validation Hole Lets Remote Servers Create/Overwrite Files on the Target User's System
|
|
SecurityTracker Alert ID: 1015036
|
|
SecurityTracker URL: http://securitytracker.com/id?1015036
|
|
CVE Reference: CVE-2005-2126
(Links to External Site)
|
Updated: Jan 24 2008
|
Original Entry Date: Oct 11 2005
|
Impact: Modification of system information, Modification of user information
|
Fix Available: Yes
Vendor Confirmed: Yes
|
Advisory: Microsoft Security Bulletin
|
Description: A vulnerability was reported in the Microsoft Windows FTP Client. A remote FTP server can overwrite files on the target user's system during an FTP transfer initiated by the target user.
The Windows FTP Client does not properly validate filenames supplied by remote FTP servers. When the user of a FTP client choses
to transfer a file, the server can supply a specially crafted filename to cause the requested file to be written to an arbitrary
location on the target user's system.
|
Impact: A remote FTP server can create or overwrite files on the target user's system during an FTP transfer initiated by the target user.
|
Solution: The vendor has issued the following fixes:
Microsoft Windows XP Service Pack 1:
http://www.microsoft.com/downloads/details.aspx?FamilyId=351C63A3-AB62-418D-8678-3AF7
91D73A29
Microsoft Windows Server 2003:
http://www.microsoft.com/downloads/details.aspx?FamilyId=4940CF64-E1FD-4E88-8980-3106BE03BF12
Microsoft
Windows Server 2003 for Itanium-based Systems:
http://www.microsoft.com/downloads/details.aspx?FamilyId=B715147B-DE2D-4F14-9548-AFF18641D0F3
Internet
Explorer 6 Service Pack 1 on Microsoft Windows 2000 Service Pack 4:
http://www.microsoft.com/downloads/details.aspx?FamilyId=FCEA60E5-9EA8-4216-BA4D-C85054892DBB
A
restart is required in most cases.
|
Vendor URL: www.microsoft.com/technet/security/Bulletin/MS05-044.mspx (Links to External Site)
|
Cause: Input validation error
|
Underlying OS: Windows (2000), Windows (2003), Windows (XP)
|
|
Message History:
None.
|
Source Message Contents
|
Date: Mon, 10 Oct 2005 23:10:55 -0400
Subject: MS05-044
|
http://www.microsoft.com/technet/security/Bulletin/MS05-044.mspx
|
|