Описание
options.c in atftp before 0.7.5 reads past the end of an array, and consequently discloses server-side /etc/group data to a remote client.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | ignored | end of standard support, was needs-triage |
| devel | not-affected | 0.8.0-3 |
| esm-apps/bionic | released | 0.7.git20120829-3.1~0.18.04.1+esm1 |
| esm-apps/focal | released | 0.7.git20120829-3.1ubuntu0.1 |
| esm-apps/jammy | not-affected | 0.7.git20210915-4 |
| esm-apps/xenial | released | 0.7.git20120829-3.1~0.16.04.1+esm1 |
| focal | released | 0.7.git20120829-3.1ubuntu0.1 |
| impish | ignored | end of life |
| jammy | not-affected | 0.7.git20210915-4 |
| kinetic | ignored | end of life, was needs-triage |
Показывать по
Ссылки на источники
EPSS
5 Medium
CVSS2
5.3 Medium
CVSS3
Связанные уязвимости
options.c in atftp before 0.7.5 reads past the end of an array, and consequently discloses server-side /etc/group data to a remote client.
options.c in atftp before 0.7.5 reads past the end of an array, and co ...
options.c in atftp before 0.7.5 reads past the end of an array, and consequently discloses server-side /etc/group data to a remote client.
Уязвимость компонента options клиента TFTP Atftp, позволяющая нарушителю получить доступ к конфиденциальным данным
EPSS
5 Medium
CVSS2
5.3 Medium
CVSS3