VYPR

TFTP

by TFTP

CVEs (3)

  • CVE-2026-85234HigSep 15, 2026
    risk 0.42cvss 7.5epss 0.01

    A flaw was found in tftp-hpa. When the `in.tftpd` remap engine processes an inverse remap rule that also aborts with a non-empty custom error message, it can pass invalid match offsets to the `genmatchstring()` function. This leads to out-of-bounds read/write operations. A…

  • CVE-2011-2199Jul 22, 2012
    risk 0.00cvss —epss 0.05

    Buffer overflow in tftp-hpa before 5.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via the utimeout option.

  • CVE-1999-0183Sep 1, 1997
    risk 0.00cvss —epss 0.02

    Linux implementations of TFTP would allow access to files outside the restricted directory.