High severity7.5NVD Advisory· Published Dec 22, 2023· Updated Jun 17, 2026
CVE-2023-51713
CVE-2023-51713
Description
make_ftp_cmd in main.c in ProFTPD before 1.3.8a has a one-byte out-of-bounds read, and daemon crash, because of mishandling of quote/backslash semantics.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6- osv-coords3 versionspkg:rpm/opensuse/proftpd&distro=openSUSE%20Leap%2015.5pkg:rpm/opensuse/proftpd&distro=openSUSE%20Tumbleweedpkg:rpm/suse/proftpd&distro=SUSE%20Package%20Hub%2015%20SP5
< 1.3.8b-bp155.2.6.1+ 2 more
- (no CPE)range: < 1.3.8b-bp155.2.6.1
- (no CPE)range: < 1.3.8b-2.1
- (no CPE)range: < 1.3.8b-bp155.2.6.1
Patches
Vulnerability mechanics
References
4- github.com/proftpd/proftpd/issues/1683nvdExploitIssue TrackingPatchVendor Advisory
- github.com/proftpd/proftpd/issues/1683nvdExploitIssue TrackingPatchVendor Advisory
- github.com/proftpd/proftpd/blob/1.3.8/NEWSnvdRelease Notes
- lists.debian.org/debian-lts-announce/2024/11/msg00032.htmlnvd
News mentions
0No linked articles in our index yet.