CVE-2003-0853
published 2003-11-17CVE-2003-0853: An integer overflow in ls in the fileutils or coreutils packages may allow local users to cause a denial of service or execute arbitrary code via a large -w…
PriorityP426medium5CVSS 2.0
AVNACLAuNCNINAP
EXPLOIT
EPSS
10.44%
95.2th percentile
An integer overflow in ls in the fileutils or coreutils packages may allow local users to cause a denial of service or execute arbitrary code via a large -w value, which could be remotely exploited via applications that use ls, such as wu-ftpd.
Affected
31 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | coreutils | < coreutils 5.2.1-1 (bookworm) | coreutils 5.2.1-1 (bookworm) |
| gnu | coreutils | >= 0 < 5.2.1-1 | 5.2.1-1 |
| gnu | coreutils | >= 0 < 5.2.1-1 | 5.2.1-1 |
| gnu | coreutils | >= 0 < 5.2.1-1 | 5.2.1-1 |
| gnu | coreutils | >= 0 < 5.2.1-1 | 5.2.1-1 |
| gnu | fileutils | — | — |
| gnu | fileutils | — | — |
| gnu | fileutils | — | — |
| gnu | fileutils | — | — |
| gnu | fileutils | — | — |
| washington_university | wu-ftpd | — | — |
| washington_university | wu-ftpd | — | — |
| washington_university | wu-ftpd | — | — |
| washington_university | wu-ftpd | — | — |
| washington_university | wu-ftpd | — | — |
| washington_university | wu-ftpd | — | — |
| washington_university | wu-ftpd | — | — |
| washington_university | wu-ftpd | — | — |
| washington_university | wu-ftpd | — | — |
| washington_university | wu-ftpd | — | — |
| washington_university | wu-ftpd | — | — |
| washington_university | wu-ftpd | — | — |
| washington_university | wu-ftpd | — | — |
| washington_university | wu-ftpd | — | — |
| washington_university | wu-ftpd | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv5.0MEDIUM
vendor_debian5.0MEDIUM
vendor_redhat5.0MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-5rh2-8gqg-243p: An integer overflow in ls in the fileutils or coreutils packages may allow local users to cause a denial of service or execute arbitrary code via a la
ghsa_unreviewed·2022-04-29
CVE-2003-0853 [MEDIUM] GHSA-5rh2-8gqg-243p: An integer overflow in ls in the fileutils or coreutils packages may allow local users to cause a denial of service or execute arbitrary code via a la
An integer overflow in ls in the fileutils or coreutils packages may allow local users to cause a denial of service or execute arbitrary code via a large -w value, which could be remotely exploited via applications that use ls, such as wu-ftpd.
OSV
CVE-2003-0853: An integer overflow in ls in the fileutils or coreutils packages may allow local users to cause a denial of service or execute arbitrary code via a la
osv·2003-11-17·CVSS 5.0
CVE-2003-0853 [MEDIUM] CVE-2003-0853: An integer overflow in ls in the fileutils or coreutils packages may allow local users to cause a denial of service or execute arbitrary code via a la
An integer overflow in ls in the fileutils or coreutils packages may allow local users to cause a denial of service or execute arbitrary code via a large -w value, which could be remotely exploited via applications that use ls, such as wu-ftpd.
Red Hat
security flaw
vendor_redhat·2003-10-15·CVSS 5.0
CVE-2003-0853 [MEDIUM] security flaw
security flaw
An integer overflow in ls in the fileutils or coreutils packages may allow local users to cause a denial of service or execute arbitrary code via a large -w value, which could be remotely exploited via applications that use ls, such as wu-ftpd.
Debian
CVE-2003-0853: coreutils - An integer overflow in ls in the fileutils or coreutils packages may allow local...
vendor_debian·2003·CVSS 5.0
CVE-2003-0853 [MEDIUM] CVE-2003-0853: coreutils - An integer overflow in ls in the fileutils or coreutils packages may allow local...
An integer overflow in ls in the fileutils or coreutils packages may allow local users to cause a denial of service or execute arbitrary code via a large -w value, which could be remotely exploited via applications that use ls, such as wu-ftpd.
Scope: local
bookworm: resolved (fixed in 5.2.1-1)
bullseye: resolved (fixed in 5.2.1-1)
forky: resolved (fixed in 5.2.1-1)
sid: resolved (fixed in 5.2.1-1)
trixie: resolved (fixed in 5.2.1-1)
No detection rules found.
Bugzilla
CVE-2003-0853 security flaw
bugzilla·2018-08-16·CVSS 5.0
CVE-2003-0853 [MEDIUM] CVE-2003-0853 security flaw
CVE-2003-0853 security flaw
Flaw bug created to hold information about an old flaw we knew something about. For more details see the MITRE CVE description.
Discussion:
MITRE description:
An integer overflow in ls in the fileutils or coreutils packages may allow local users to cause a denial of service or execute arbitrary code via a large -w value, which could be remotely exploited via applications that use ls, such as wu-ftpd.
Bugzilla
Vulnerability fix for CAN-2003-0853 not applied
bugzilla·2004-03-02
[MEDIUM] Vulnerability fix for CAN-2003-0853 not applied
Vulnerability fix for CAN-2003-0853 not applied
Description of problem:
The vulnerability described in CAN-2003-0853
(http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2003-0853) and
fixed in Redhat 9 (http://rhn.redhat.com/errata/RHSA-2003-309.html)
and Redhat Enterprise
(http://rhn.redhat.com/errata/RHSA-2003-310.html) does not seem to be
applied to the version of coreutils found in Fedora Core 1.
Version-Release number of selected component (if applicable):
coreutils-5.0-24
Discussion:
Eek! Looks like you're right.
---
Note that wu-ftpd is not shipped in Fedora Core 1, and vsftpd uses an
ls built-in.
Bugzilla
CAN-2003-0853/0854 DoS in services that use "ls"
bugzilla·2003-10-23
[MEDIUM] CAN-2003-0853/0854 DoS in services that use "ls"
CAN-2003-0853/0854 DoS in services that use "ls"
Georgi Guninski discovered a memory starvation denial of service
vulnerability in the ls program. It is possible to make ls allocate a
huge amount of memory by specifing certain command line arguments. This
vulnerability is remotely exploitable through services like wu-ftpd which
pass user arguments to ls. The Common Vulnerabilities and Exposures
project (cve.mitre.org) has assigned the name CAN-2003-0854 to this issue.
A non-exploitable integer overflow in ls has been discovered. It is
possible to make ls crash by specifing certain command line arguments.
This vulnerability is remotely exploitable through services like wu-ftpd
which pass user arguments to ls. The Common Vulnerabilities and Exposures
project (cve.mitre.org) has assigned th
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000768http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000771http://lists.grok.org.uk/pipermail/full-disclosure/2003-October/012548.htmlhttp://secunia.com/advisories/10126http://secunia.com/advisories/17069http://support.avaya.com/elmodocs2/security/ASA-2005-213.pdfhttp://www.guninski.com/binls.htmlhttp://www.mandriva.com/security/advisories?name=MDKSA-2003:106http://www.redhat.com/support/errata/RHSA-2003-309.htmlhttp://www.redhat.com/support/errata/RHSA-2003-310.htmlhttp://www.securityfocus.com/advisories/6014http://www.securityfocus.com/bid/8875http://www.turbolinux.com/security/TLSA-2003-60.txthttp://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000768http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000771http://lists.grok.org.uk/pipermail/full-disclosure/2003-October/012548.htmlhttp://secunia.com/advisories/10126http://secunia.com/advisories/17069http://support.avaya.com/elmodocs2/security/ASA-2005-213.pdfhttp://www.guninski.com/binls.htmlhttp://www.mandriva.com/security/advisories?name=MDKSA-2003:106http://www.redhat.com/support/errata/RHSA-2003-309.htmlhttp://www.redhat.com/support/errata/RHSA-2003-310.htmlhttp://www.securityfocus.com/advisories/6014http://www.securityfocus.com/bid/8875http://www.turbolinux.com/security/TLSA-2003-60.txt
2003-11-17
Published