Debian Proftpd-Dfsg vulnerabilities
35 known vulnerabilities affecting debian/proftpd-dfsg.
Total CVEs
35
CISA KEV
0
Public exploits
12
Exploited in wild
2
Severity breakdown
CRITICAL2HIGH12MEDIUM10LOW11
Vulnerabilities
Page 1 of 2
CVE-2023-48795P1MEDIUMCVSS 5.9ExploitedPoCfixed in dropbear 2022.83-1+deb12u1 (bookworm)2023
CVE-2023-48795 [MEDIUM] CVE-2023-48795: dropbear - The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH bef...
The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packets are omitted (from the extension negotiation message), and a client and server may consequently end up with a connection for which some security features have been downgraded or disabl
debian
CVE-2015-3306P1CRITICALCVSS 10.0PoCfixed in proftpd-dfsg 1.3.5-2 (bookworm)2015
CVE-2015-3306 [CRITICAL] CVE-2015-3306: proftpd-dfsg - The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write t...
The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files via the site cpfr and site cpto commands.
Scope: local
bookworm: resolved (fixed in 1.3.5-2)
bullseye: resolved (fixed in 1.3.5-2)
forky: resolved (fixed in 1.3.5-2)
sid: resolved (fixed in 1.3.5-2)
trixie: resolved (fixed in 1.3.5-2)
debian
CVE-2010-4221P2CRITICALCVSS 10.0PoCfixed in proftpd-dfsg 1.3.3a-5 (bookworm)2010
CVE-2010-4221 [CRITICAL] CVE-2010-4221: proftpd-dfsg - Multiple stack-based buffer overflows in the pr_netio_telnet_gets function in ne...
Multiple stack-based buffer overflows in the pr_netio_telnet_gets function in netio.c in ProFTPD before 1.3.3c allow remote attackers to execute arbitrary code via vectors involving a TELNET IAC escape character to a (1) FTP or (2) FTPS server.
Scope: local
bookworm: resolved (fixed in 1.3.3a-5)
bullseye: resolved (fixed in 1.3.3a-5)
forky: resolved (fixed in
debian
CVE-2011-4130P2HIGHCVSS 9.0Exploitedfixed in proftpd-dfsg 1.3.4~rc3-2 (bookworm)2011
CVE-2011-4130 [CRITICAL] CVE-2011-4130: proftpd-dfsg - Use-after-free vulnerability in the Response API in ProFTPD before 1.3.3g allows...
Use-after-free vulnerability in the Response API in ProFTPD before 1.3.3g allows remote authenticated users to execute arbitrary code via vectors involving an error that occurs after an FTP data transfer.
Scope: local
bookworm: resolved (fixed in 1.3.4~rc3-2)
bullseye: resolved (fixed in 1.3.4~rc3-2)
forky: resolved (fixed in 1.3.4~rc3-2)
sid: resolved (fixed
debian
CVE-2006-5815P2HIGHCVSS 10.0PoCfixed in proftpd-dfsg 1.3.0-15 (bookworm)2006
CVE-2006-5815 [CRITICAL] CVE-2006-5815: proftpd-dfsg - Stack-based buffer overflow in the sreplace function in ProFTPD 1.3.0 and earlie...
Stack-based buffer overflow in the sreplace function in ProFTPD 1.3.0 and earlier allows remote attackers, probably authenticated, to cause a denial of service and execute arbitrary code, as demonstrated by vd_proftpd.pm, a "ProFTPD remote exploit."
Scope: local
bookworm: resolved (fixed in 1.3.0-15)
bullseye: resolved (fixed in 1.3.0-15)
forky: resolved (fix
debian
CVE-2009-0542P2MEDIUMCVSS 7.5PoCfixed in proftpd-dfsg 1.3.2-1 (bookworm)2009
CVE-2009-0542 [HIGH] CVE-2009-0542: proftpd-dfsg - SQL injection vulnerability in ProFTPD Server 1.3.1 through 1.3.2rc2 allows remo...
SQL injection vulnerability in ProFTPD Server 1.3.1 through 1.3.2rc2 allows remote attackers to execute arbitrary SQL commands via a "%" (percent) character in the username, which introduces a "'" (single quote) character during variable substitution by mod_sql.
Scope: local
bookworm: resolved (fixed in 1.3.2-1)
bullseye: resolved (fixed in 1.3.2-1)
forky: resolv
debian
CVE-2019-18217P2HIGHCVSS 7.5PoCfixed in proftpd-dfsg 1.3.6a-2 (bookworm)2019
CVE-2019-18217 [HIGH] CVE-2019-18217: proftpd-dfsg - ProFTPD before 1.3.6b and 1.3.7rc before 1.3.7rc2 allows remote unauthenticated ...
ProFTPD before 1.3.6b and 1.3.7rc before 1.3.7rc2 allows remote unauthenticated denial-of-service due to incorrect handling of overly long commands because main.c in a child process enters an infinite loop.
Scope: local
bookworm: resolved (fixed in 1.3.6a-2)
bullseye: resolved (fixed in 1.3.6a-2)
forky: resolved (fixed in 1.3.6a-2)
sid: resolved (fixed in 1.3.6
debian
CVE-2019-12815P2LOWCVSS 10.0fixed in proftpd-dfsg 1.3.6-6 (bookworm)2019
CVE-2019-12815 [CRITICAL] CVE-2019-12815: proftpd-dfsg - An arbitrary file copy vulnerability in mod_copy in ProFTPD up to 1.3.5b allows ...
An arbitrary file copy vulnerability in mod_copy in ProFTPD up to 1.3.5b allows for remote code execution and information disclosure without authentication, a related issue to CVE-2015-3306.
Scope: local
bookworm: resolved (fixed in 1.3.6-6)
bullseye: resolved (fixed in 1.3.6-6)
forky: resolved (fixed in 1.3.6-6)
sid: resolved (fixed in 1.3.6-6)
trixie: res
debian
CVE-2024-48651P3HIGHCVSS 7.5PoCfixed in proftpd-dfsg 1.3.8+dfsg-4+deb12u4 (bookworm)2024
CVE-2024-48651 [HIGH] CVE-2024-48651: proftpd-dfsg - In ProFTPD through 1.3.8b before cec01cc, supplemental group inheritance grants ...
In ProFTPD through 1.3.8b before cec01cc, supplemental group inheritance grants unintended access to GID 0 because of the lack of supplemental groups from mod_sql.
Scope: local
bookworm: resolved (fixed in 1.3.8+dfsg-4+deb12u4)
bullseye: resolved (fixed in 1.3.7a+dfsg-12+deb11u3)
forky: resolved (fixed in 1.3.8.b+dfsg-4)
sid: resolved (fixed in 1.3.8.b+dfsg-4)
debian
CVE-2009-0543P3MEDIUMCVSS 6.8PoCfixed in proftpd-dfsg 1.3.2-1 (bookworm)2009
CVE-2009-0543 [MEDIUM] CVE-2009-0543: proftpd-dfsg - ProFTPD Server 1.3.1, with NLS support enabled, allows remote attackers to bypas...
ProFTPD Server 1.3.1, with NLS support enabled, allows remote attackers to bypass SQL injection protection mechanisms via invalid, encoded multibyte characters, which are not properly handled in (1) mod_sql_mysql and (2) mod_sql_postgres.
Scope: local
bookworm: resolved (fixed in 1.3.2-1)
bullseye: resolved (fixed in 1.3.2-1)
forky: resolved (fixed in 1.3.2-1)
debian
CVE-2023-51713P3HIGHCVSS 7.5PoCfixed in proftpd-dfsg 1.3.8+dfsg-4+deb12u3 (bookworm)2023
CVE-2023-51713 [HIGH] CVE-2023-51713: proftpd-dfsg - make_ftp_cmd in main.c in ProFTPD before 1.3.8a has a one-byte out-of-bounds rea...
make_ftp_cmd in main.c in ProFTPD before 1.3.8a has a one-byte out-of-bounds read, and daemon crash, because of mishandling of quote/backslash semantics.
Scope: local
bookworm: resolved (fixed in 1.3.8+dfsg-4+deb12u3)
bullseye: resolved (fixed in 1.3.7a+dfsg-12+deb11u3)
forky: resolved (fixed in 1.3.8.a+dfsg-1)
sid: resolved (fixed in 1.3.8.a+dfsg-1)
trixie: re
debian
CVE-2011-1137P3MEDIUMCVSS 5.0PoCfixed in proftpd-dfsg 1.3.3d-4 (bookworm)2011
CVE-2011-1137 [MEDIUM] CVE-2011-1137: proftpd-dfsg - Integer overflow in the mod_sftp (aka SFTP) module in ProFTPD 1.3.3d and earlier...
Integer overflow in the mod_sftp (aka SFTP) module in ProFTPD 1.3.3d and earlier allows remote attackers to cause a denial of service (memory consumption leading to OOM kill) via a malformed SSH message.
Scope: local
bookworm: resolved (fixed in 1.3.3d-4)
bullseye: resolved (fixed in 1.3.3d-4)
forky: resolved (fixed in 1.3.3d-4)
sid: resolved (fixed in 1.3.3d-4
debian
CVE-2020-9273P2HIGHCVSS 8.8fixed in proftpd-dfsg 1.3.6c-2 (bookworm)2020
CVE-2020-9273 [HIGH] CVE-2020-9273: proftpd-dfsg - In ProFTPD 1.3.7, it is possible to corrupt the memory pool by interrupting the ...
In ProFTPD 1.3.7, it is possible to corrupt the memory pool by interrupting the data transfer channel. This triggers a use-after-free in alloc_pool in pool.c, and possible remote code execution.
Scope: local
bookworm: resolved (fixed in 1.3.6c-2)
bullseye: resolved (fixed in 1.3.6c-2)
forky: resolved (fixed in 1.3.6c-2)
sid: resolved (fixed in 1.3.6c-2)
trixie: r
debian
CVE-2010-3867P3HIGHCVSS 7.1PoCfixed in proftpd-dfsg 1.3.3a-4 (bookworm)2010
CVE-2010-3867 [HIGH] CVE-2010-3867: proftpd-dfsg - Multiple directory traversal vulnerabilities in the mod_site_misc module in ProF...
Multiple directory traversal vulnerabilities in the mod_site_misc module in ProFTPD before 1.3.3c allow remote authenticated users to create directories, delete directories, create symlinks, and modify file timestamps via directory traversal sequences in a (1) SITE MKDIR, (2) SITE RMDIR, (3) SITE SYMLINK, or (4) SITE UTIME command.
Scope: local
bookworm: resolved
debian
CVE-2006-6563P3MEDIUMCVSS 6.6PoCfixed in proftpd-dfsg 1.3.0-17 (bookworm)2006
CVE-2006-6563 [MEDIUM] CVE-2006-6563: proftpd-dfsg - Stack-based buffer overflow in the pr_ctrls_recv_request function in ctrls.c in ...
Stack-based buffer overflow in the pr_ctrls_recv_request function in ctrls.c in the mod_ctrls module in ProFTPD before 1.3.1rc1 allows local users to execute arbitrary code via a large reqarglen length value.
Scope: local
bookworm: resolved (fixed in 1.3.0-17)
bullseye: resolved (fixed in 1.3.0-17)
forky: resolved (fixed in 1.3.0-17)
sid: resolved (fixed in 1.3
debian
CVE-2006-6170P3MEDIUMCVSS 10.0fixed in proftpd-dfsg 1.3.0-16 (bookworm)2006
CVE-2006-6170 [CRITICAL] CVE-2006-6170: proftpd-dfsg - Buffer overflow in the tls_x509_name_oneline function in the mod_tls module, as ...
Buffer overflow in the tls_x509_name_oneline function in the mod_tls module, as used in ProFTPD 1.3.0a and earlier, and possibly other products, allows remote attackers to execute arbitrary code via a large data length argument, a different vulnerability than CVE-2006-5815.
Scope: local
bookworm: resolved (fixed in 1.3.0-16)
bullseye: resolved (fixed in 1.3.0
debian
CVE-2016-3125P3HIGHCVSS 7.5fixed in proftpd-dfsg 1.3.5b-1 (bookworm)2016
CVE-2016-3125 [HIGH] CVE-2016-3125: proftpd-dfsg - The mod_tls module in ProFTPD before 1.3.5b and 1.3.6 before 1.3.6rc2 does not p...
The mod_tls module in ProFTPD before 1.3.5b and 1.3.6 before 1.3.6rc2 does not properly handle the TLSDHParamFile directive, which might cause a weaker than intended Diffie-Hellman (DH) key to be used and consequently allow attackers to have unspecified impact via unknown vectors.
Scope: local
bookworm: resolved (fixed in 1.3.5b-1)
bullseye: resolved (fixed in 1.
debian
CVE-2010-4652P3MEDIUMCVSS 6.8fixed in proftpd-dfsg 1.3.3a-6 (bookworm)2010
CVE-2010-4652 [MEDIUM] CVE-2010-4652: proftpd-dfsg - Heap-based buffer overflow in the sql_prepare_where function (contrib/mod_sql.c)...
Heap-based buffer overflow in the sql_prepare_where function (contrib/mod_sql.c) in ProFTPD before 1.3.3d, when mod_sql is enabled, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted username containing substitution tags, which are not properly handled during construction of an SQL query.
Scope: local
debian
CVE-2024-57392P3LOWCVSS 7.5fixed in proftpd-dfsg 1.3.7a+dfsg-12+deb11u5 (bullseye)2024
CVE-2024-57392 [HIGH] CVE-2024-57392: proftpd-dfsg - Buffer Overflow vulnerability in Proftpd commit 4017eff8 allows a remote attacke...
Buffer Overflow vulnerability in Proftpd commit 4017eff8 allows a remote attacker to execute arbitrary code and can cause a Denial of Service (DoS) on the FTP service by sending a maliciously crafted message to the ProFTPD service port.
Scope: local
bookworm: open
bullseye: resolved (fixed in 1.3.7a+dfsg-12+deb11u5)
forky: resolved (fixed in 1.3.8.c+dfsg-2)
sid
debian
CVE-2007-2165P3LOWCVSS 5.1fixed in proftpd-dfsg 1.3.0-24 (bookworm)2007
CVE-2007-2165 [MEDIUM] CVE-2007-2165: proftpd-dfsg - The Auth API in ProFTPD before 20070417, when multiple simultaneous authenticati...
The Auth API in ProFTPD before 20070417, when multiple simultaneous authentication modules are configured, does not require that the module that checks authentication is the same as the module that retrieves authentication data, which might allow remote attackers to bypass authentication, as demonstrated by use of SQLAuthTypes Plaintext in mod_sql, with data re
debian
1 / 2Next →