Oftpd
by Oftpd
CVEs (3)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2006-6767 | Hig | 0.53 | 7.5 | 0.14 | Jan 16, 2007 | oftpd before 0.3.7 allows remote attackers to cause a denial of service (daemon abort) via a (1) LPRT or (2) LPASV command with an unsupported address family, which triggers an assertion failure. | ||
| CVE-2005-2239 | 0.03 | — | 0.06 | Jul 12, 2005 | oftpd 0.3.7 allows remote attackers to cause a denial of service via a USER command with a large number of null (\0) characters. | |||
| CVE-2004-0376 | 0.00 | — | 0.01 | May 4, 2004 | oftpd 0.3.6 and earlier allows remote attackers to cause a denial of service (crash) via a PORT command with a large value. |
- risk 0.53cvss 7.5epss 0.14
oftpd before 0.3.7 allows remote attackers to cause a denial of service (daemon abort) via a (1) LPRT or (2) LPASV command with an unsupported address family, which triggers an assertion failure.
- CVE-2005-2239Jul 12, 2005risk 0.03cvss —epss 0.06
oftpd 0.3.7 allows remote attackers to cause a denial of service via a USER command with a large number of null (\0) characters.
- CVE-2004-0376May 4, 2004risk 0.00cvss —epss 0.01
oftpd 0.3.6 and earlier allows remote attackers to cause a denial of service (crash) via a PORT command with a large value.