CyberSec.Space Logo
Back to CVE Browser

CVE-2020-9274

HIGH
7.5
CVSS Severity Score
EPSS Score0.0960%
EPSS Percentile10.23th
PublishedFeb 26, 2020
Last ModifiedNov 21, 2024

Vulnerability Description

An issue was discovered in Pure-FTPd 1.0.49. An uninitialized pointer vulnerability has been detected in the diraliases linked list. When the *lookup_alias(const char alias) or print_aliases(void) function is called, they fail to correctly detect the end of the linked list and try to access a non-existent list member. This is related to init_aliases in diraliases.c.

Affected Platforms (CPE)

πŸ“¦
Pureftpd

Pure Ftpd

< 1.0.50
πŸ’»
Debian

Debian Linux

= 8.0
πŸ“¦
Fedoraproject

Extra Packages For Enterprise Linux

= 7.0
πŸ“¦
Fedoraproject

Extra Packages For Enterprise Linux

= 8.0
πŸ’»
Fedoraproject

Fedora

= 30
πŸ’»
Fedoraproject

Fedora

= 31
πŸ’»
Fedoraproject

Fedora

= 32
πŸ’»
Canonical

Ubuntu Linux

= 16.04

References & Advisories

Related Vulnerabilities