CVE-2011-5033

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
29/12/2011
Last modified:
11/04/2025

Description

Stack-based buffer overflow in CFS.c in ConfigServer Security & Firewall (CSF) before 5.43, when running on a DirectAdmin server, allows local users to cause a denial of service (crash) via a long string in an admin.list file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:configserver:configserver_security_firewall:*:*:*:*:*:*:*:* 5.42 (including)
cpe:2.3:a:configserver:configserver_security_firewall:5.00:*:*:*:*:*:*:*
cpe:2.3:a:configserver:configserver_security_firewall:5.01:*:*:*:*:*:*:*
cpe:2.3:a:configserver:configserver_security_firewall:5.02:*:*:*:*:*:*:*
cpe:2.3:a:configserver:configserver_security_firewall:5.03:*:*:*:*:*:*:*
cpe:2.3:a:configserver:configserver_security_firewall:5.04:*:*:*:*:*:*:*
cpe:2.3:a:configserver:configserver_security_firewall:5.05:*:*:*:*:*:*:*
cpe:2.3:a:configserver:configserver_security_firewall:5.06:*:*:*:*:*:*:*
cpe:2.3:a:configserver:configserver_security_firewall:5.07:*:*:*:*:*:*:*
cpe:2.3:a:configserver:configserver_security_firewall:5.08:*:*:*:*:*:*:*
cpe:2.3:a:configserver:configserver_security_firewall:5.09:*:*:*:*:*:*:*
cpe:2.3:a:configserver:configserver_security_firewall:5.10:*:*:*:*:*:*:*
cpe:2.3:a:configserver:configserver_security_firewall:5.11:*:*:*:*:*:*:*
cpe:2.3:a:configserver:configserver_security_firewall:5.12:*:*:*:*:*:*:*
cpe:2.3:a:configserver:configserver_security_firewall:5.13:*:*:*:*:*:*:*