Buffer overflow in WinSCP.

Advertisement

vikas.adhangale
Joined:
Posts:
1
Location:
Pune

Buffer overflow in WinSCP.

Hi all,

I'm a security professional, working in a reputed security firm. There is a possible overflow in WinSCP-3.8.0. WinSCP is not able to handle long filenames. This is true in case of long filenames of 255 characters long with normal alphanumeric characters and with specially crafted filenames as well. Once you try to copy files with long filenames, a buffer overrun occurs and windows terminates WinSCP instances. :D

Best Regards,
Vikas Adhangale.
MOB: +91 9822052560
YIM: vikas_adhangale
Gtalk: vikas.adhangale

Reply with quote

Advertisement

martin
Site Admin
martin avatar
Joined:
Posts:
29,266
Location:
Prague, Czechia

Re: Buffer overflow in WinSCP.

Does the problem occur with the latest version? Also do you use SFTP or SCP? I'm not able to test it myself as I do not have a system available, where such a long filename can be created.
_________________
Martin Prikryl

Reply with quote

Advertisement

You can post new topics in this forum