Описание
A flaw was found in vsftpd. This vulnerability allows a denial of service (DoS) via an integer overflow in the ls command parameter parsing, triggered by a remote, authenticated attacker sending a crafted STAT command with a specific byte sequence.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | see notes |
| esm-infra-legacy/trusty | not-affected | see notes |
| esm-infra/bionic | not-affected | see notes |
| esm-infra/focal | not-affected | see notes |
| esm-infra/xenial | not-affected | see notes |
| jammy | not-affected | see notes |
| noble | not-affected | see notes |
| plucky | not-affected | see notes |
| questing | not-affected | see notes |
| upstream | not-affected | see notes |
Показывать по
EPSS
6.5 Medium
CVSS3
Связанные уязвимости
A flaw was found in vsftpd. This vulnerability allows a denial of service (DoS) via an integer overflow in the ls command parameter parsing, triggered by a remote, authenticated attacker sending a crafted STAT command with a specific byte sequence.
A flaw was found in vsftpd. This vulnerability allows a denial of service (DoS) via an integer overflow in the ls command parameter parsing, triggered by a remote, authenticated attacker sending a crafted STAT command with a specific byte sequence.
A flaw was found in vsftpd. This vulnerability allows a denial of serv ...
EPSS
6.5 Medium
CVSS3