CVE-2020-6097

7.5HIGH

An exploitable denial of service vulnerability exists in the atftpd daemon functionality of atftp 0.7.git20120829-3.1+b1. A specially crafted sequence of RRQ-Multicast requests trigger an assert() cal

Published: 9/10/2020Updated: 11/21/2024

Description

An exploitable denial of service vulnerability exists in the atftpd daemon functionality of atftp 0.7.git20120829-3.1+b1. A specially crafted sequence of RRQ-Multicast requests trigger an assert() call resulting in denial-of-service. An attacker can send a sequence of malicious packets to trigger this vulnerability.

AI AnalysisPowered by AI

Affected Products

atftp_projectatftp
0.7.git20120829-3.1\+b1
debiandebian_linux
9.0
opensuseleap
15.2

References