CVE-2020-6097

7.5HIGH

An exploitable denial of service vulnerability exists in the atftpd daemon functionality of atftp 0.7.git20120829-3.1+b1. A specially crafted sequence of RRQ-Multicast requests trigger an assert() cal

Veröffentlicht: 9/10/2020Aktualisiert: 11/21/2024

Beschreibung

An exploitable denial of service vulnerability exists in the atftpd daemon functionality of atftp 0.7.git20120829-3.1+b1. A specially crafted sequence of RRQ-Multicast requests trigger an assert() call resulting in denial-of-service. An attacker can send a sequence of malicious packets to trigger this vulnerability.

KI-AnalyseKI-gestützt

Betroffene Produkte

atftp_projectatftp
0.7.git20120829-3.1\+b1
debiandebian_linux
9.0
opensuseleap
15.2

Referenzen