Buffer overflow in lukemftp FTP client in SuSE 6.4 through 8.0, and possibly other operating systems, allows a malicious FTP server to execute arbitrary code via a long PASV command.
http://www.novell.com/linux/security/advisories/2002_18_lukemftp.html