Bug 77158

Summary: Buffer Overflow in lukemftp
Product: Base System Reporter: Ryoji Kanai <rkanai>
Component: binAssignee: Mike Heffner <mikeh>
Status: Closed FIXED    
Severity: Affects Only Me    
Priority: Normal    
Version: 6.0-CURRENT   
Hardware: Any   
OS: Any   

Description Ryoji Kanai 2005-02-06 04:30:26 UTC
A buffer overflow exists in ftp(lukemftp).

Fix: 

main.c:668 is a problem. fix thie code.

> memcpy(line, buf, num);
How-To-Repeat: Just use long filename. ex:

ftp> get aaaaaaaaaaaa... (over 1024 = BUFSIZ)
Segmentation fault (core dumped)
Comment 1 Mike Heffner freebsd_committer freebsd_triage 2005-04-05 06:12:44 UTC
Responsible Changed
From-To: freebsd-bugs->mikeh

I've been handling lukemftp imports.
Comment 2 Mike Heffner freebsd_committer freebsd_triage 2005-05-17 04:50:05 UTC
State Changed
From-To: open->closed

Fixed in NetBSD and imported into HEAD. Thanks!