Vulnerability Description
A local buffer overflow vulnerability exists in the latest version of Miniftpd in ftpproto.c through the tmp variable, where a crafted payload can be sent to the affected function.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Miniftpd Project | Miniftpd | - |
Related Weaknesses (CWE)
References
- https://github.com/Gabe-commiter/Miniftpd/issues/4ExploitThird Party Advisory
- https://github.com/Gabe-commiter/Miniftpd/issues/4ExploitThird Party Advisory
FAQ
What is CVE-2021-42624?
CVE-2021-42624 is a vulnerability with a CVSS score of 7.8 (HIGH). A local buffer overflow vulnerability exists in the latest version of Miniftpd in ftpproto.c through the tmp variable, where a crafted payload can be sent to the affected function.
How severe is CVE-2021-42624?
CVE-2021-42624 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-42624?
Check the references section above for vendor advisories and patch information. Affected products include: Miniftpd Project Miniftpd.