Known Vulnerabilities for Atftp by Atftp Project
Listed below are 5 of the newest known vulnerabilities associated with "Atftp" by "Atftp Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-46671 json | options.c in atftp before 0.7.5 reads past the end of an array, and consequently discloses server-side /etc/group data to a r... | 5.3 - MEDIUM | 2022-02-04 | 2022-10-14 |
| CVE-2021-41054 json | tftpd_file.c in atftp through 0.7.4 has a buffer overflow because buffer-size handling does not properly consider the combina... | 7.5 - HIGH | 2021-09-13 | 2021-11-30 |
| CVE-2020-6097 json | An exploitable denial of service vulnerability exists in the atftpd daemon functionality of atftp 0.7.git20120829-3.1+b1. A s... | 7.5 - HIGH | 2020-09-10 | 2022-05-12 |
| CVE-2019-11366 json | An issue was discovered in atftpd in atftp 0.7.1. It does not lock the thread_list_mutex mutex before assigning the current t... | 5.9 - MEDIUM | 2019-04-20 | 2020-09-28 |
| CVE-2019-11365 json | An issue was discovered in atftpd in atftp 0.7.1. A remote attacker may send a crafted packet triggering a stack-based buffer... | 9.8 - CRITICAL | 2019-04-20 | 2020-09-28 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Atftp Project | Atftp | 0.7.git20120829-3.1\+b1 | |||
| Application | Atftp Project | Atftp | 0.7.2 | |||
| Application | Atftp Project | Atftp | 0.7.1 |