BisonFTP Multiple Commands Remote Buffer Overflow Vulnerabilities

Summary
The host is running BisonFTP Server and is prone to multiple buffer overflow vulnerabilities.
Impact
Successful exploitation will allow remote attackers to execute arbitrary code on the system or cause the application to crash. Impact Level: System/Application
Solution
Upgrade to BisonFTP Server Version 4.1 or higher.
Insight
The flaws are due to an error while processing the 'USER', 'LIST', 'CWD' multiple commands, which can be exploited to cause a buffer overflow by sending a command with specially-crafted an overly long parameter.
Affected
BisonFTP Server prior to version 4.1
References