Format string vulnerability in the client in Tftpd32 before 4.50 allows remote servers to cause a denial of service (crash) or possibly execute arbitrary code via format string specifiers in the Remote File field.
The product uses a function that accepts a format string as an argument, but the format string originates from an external source.
Link | Tags |
---|---|
http://osvdb.org/100511 | vdb entry |
http://packetstormsecurity.com/files/124275/Tftpd32-Client-Side-Format-String.html | exploit |
https://exchange.xforce.ibmcloud.com/vulnerabilities/89455 | vdb entry |
http://seclists.org/fulldisclosure/2013/Dec/15 | patch mailing list exploit |