Buffer Overflow vulnerability in Proftpd commit 4017eff8 allows a remote attacker to execute arbitrary code and can cause a Denial of Service (DoS) on the FTP service by sending a maliciously crafted message to the ProFTPD service port.
CVSS Details
- CVSS 3.1 Base Score: 7.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade proftpd-dfsg | Mar 4, 2025 | Feb 6, 2025 |
| Huawei Euleros 2_0_sp10 | — | Upgrade proftpd | May 13, 2025 | Feb 6, 2025 |
| Huawei Euleros 2_0_sp11 | — | Upgrade proftpd | Apr 11, 2025 | Feb 6, 2025 |
| Huawei Euleros 2_0_sp12 | — | Upgrade proftpd | May 7, 2025 | Feb 6, 2025 |
| Huawei Euleros 2_0_sp13 | — | Upgrade proftpd | Apr 1, 2025 | Feb 6, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub