Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2026:0605

Опубликовано: 17 янв. 2026
Источник: rocky
Оценка: Moderate

Описание

Moderate: vsftpd security update

The vsftpd packages include a Very Secure File Transfer Protocol (FTP) daemon, which is used to serve files over a network.

Security Fix(es):

  • vsftpd: vsftpd: Denial of service via integer overflow in ls command parameter parsing (CVE-2025-14242)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 9

НаименованиеАрхитектураРелизRPM
vsftpdx86_646.el9_7.2vsftpd-3.0.5-6.el9_7.2.x86_64.rpm

Показывать по

Связанные CVE

Исправления

Связанные уязвимости

CVSS3: 6.5
ubuntu
25 дней назад

A flaw was found in vsftpd. This vulnerability allows a denial of service (DoS) via an integer overflow in the ls command parameter parsing, triggered by a remote, authenticated attacker sending a crafted STAT command with a specific byte sequence.

CVSS3: 6.5
nvd
25 дней назад

A flaw was found in vsftpd. This vulnerability allows a denial of service (DoS) via an integer overflow in the ls command parameter parsing, triggered by a remote, authenticated attacker sending a crafted STAT command with a specific byte sequence.

CVSS3: 6.5
debian
25 дней назад

A flaw was found in vsftpd. This vulnerability allows a denial of serv ...

rocky
24 дня назад

Moderate: vsftpd security update

rocky
22 дня назад

Moderate: vsftpd security update