options.c in atftp prior to 0.7.5 reads past the end of an array, and consequently discloses server-side /etc/group data to a remote client.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
atftp project atftp |
||
debian debian linux 9.0 |
||
debian debian linux 10.0 |
||
debian debian linux 11.0 |