Title: PuTTY fxp_readdir_recv() Function Remote Overflow
Info
Disclosure
Feb 20, 2005
Discovery
Unknown
Dates
Exploit
Unknown
Solution
Feb 21, 2005
Description
A remote overflow exists in PuTTY. The 'fxp_readdir_recv()' function fails to perform proper bounds checking resulting in an integer overflow. With a specially crafted request, a remote attacker can cause arbitrary code execution resulting in a loss of integrity.