CVE-2011-4130
proftpd-dfsg - several
EPSS 12.8%
描述
Use-after-free vulnerability in the Response API in ProFTPD before 1.3.3g allows remote authenticated users to execute arbitrary code via vectors involving an error that occurs after an FTP data transfer.
如何修補 CVE-2011-4130
要修補 CVE-2011-4130,請將受影響套件升級到下列已修補版本。
- Debian/proftpd-dfsg—升級至 1.3.4~rc3-2 或更新版本
- Debian/proftpd-dfsg—升級至 1.3.1-17lenny8 或更新版本
- Debian/proftpd-dfsg—升級至 1.3.1-17lenny9 或更新版本
CVE-2011-4130 正在被利用嗎?
中等 — EPSS 為 12.8%,可持續追蹤但非最高優先。
受影響套件(3)
- from 0, < 1.3.4~rc3-2
- from 0, < 1.3.1-17lenny8
- from 0, < 1.3.1-17lenny9