CVE-2005-0372

Publication date 2 May 2005

Last updated 17 July 2025


Ubuntu priority

Description

Directory traversal vulnerability in gftp before 2.0.18 for GTK+ allows remote malicious FTP servers to read arbitrary files via .. (dot dot) sequences in filenames returned from a LIST command.

Status

Package Ubuntu Release Status
gftp 7.04 feisty
Fixed 2.0.18-11ubuntu1
6.10 edgy
Fixed 2.0.18-11ubuntu1
6.06 LTS dapper
Fixed 2.0.18-11ubuntu1