The vulnerability exists due to incorrect type casting validation inside the FTP application-layer gateway tracker. Intermixing command sequences with unexpected binary payload arguments causes the command processor to read operational memory under an incorrect type structure definition.