Ubuntu Security Update USN-6334-1: atftp vulnerabilities

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,925
Reaction score
75
Credits
-1,257
Peter Wang discovered that atftp did not properly manage certain inputs. A remote attacker could send a specially crafted tftp request to the server to cause a crash. (CVE-2020-6097) Andreas B. Mundt discovered that atftp did not properly manage certain inputs. A remote attacker could send a specially crafted tftp request to the server to cause a crash. (CVE-2021-41054) Johannes Krupp discovered that atftp did not properly manage certain inputs. A remote attacker could send a specially crafted tftp request to the server and make the server to disclose /etc/group data. (CVE-2021-46671)

Continue reading...
 


Follow Linux.org

Staff online

Members online


Top