TFTP
by TFTP
CVEs (3)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-85234 | Hig | 0.42 | 7.5 | 0.01 | Sep 15, 2026 | A flaw was found in tftp-hpa. When the `in.tftpd` remap engine processes an inverse remap rule that also aborts with a non-empty custom error message, it can pass invalid match offsets to the `genmatchstring()` function. This leads to out-of-bounds read/write operations. A… | ||
| CVE-2011-2199 | 0.00 | — | 0.05 | Jul 22, 2012 | Buffer overflow in tftp-hpa before 5.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via the utimeout option. | |||
| CVE-1999-0183 | 0.00 | — | 0.02 | Sep 1, 1997 | Linux implementations of TFTP would allow access to files outside the restricted directory. |
- risk 0.42cvss 7.5epss 0.01
A flaw was found in tftp-hpa. When the `in.tftpd` remap engine processes an inverse remap rule that also aborts with a non-empty custom error message, it can pass invalid match offsets to the `genmatchstring()` function. This leads to out-of-bounds read/write operations. A…
- CVE-2011-2199Jul 22, 2012risk 0.00cvss —epss 0.05
Buffer overflow in tftp-hpa before 5.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via the utimeout option.
- CVE-1999-0183Sep 1, 1997risk 0.00cvss —epss 0.02
Linux implementations of TFTP would allow access to files outside the restricted directory.