CVE-2019-11366
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
An issue was discovered in atftpd in atftp 0.7.1. It does not lock the thread_list_mutex mutex before assigning the current thread data structure. As a result, the daemon is vulnerable to a denial of service attack due to a NULL pointer dereference. If thread_data is NULL when assigned to current, and modified by another thread before a certain tftpd_list.c check, there is a crash when dereferencing current->next.
Fue encontrado un problema en atftpd en atftp versión 0.7.1. No bloquea el mutex thread_list_mutex anterior de asignar la estructura de datos del hilo actual. Como resultado, el dominio es vulnerable a un ataque de Denegación de Servicio (DoS) debido a una desreferencia de puntero NULL. Si thread_data es NULL cuando se asigna a actual, y se modifica por otro hilo anterior de una cierta comprobación del archivo tftpd_list.c, se produce un bloqueo al eliminar la referencia current->next.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-04-20 CVE Reserved
- 2019-04-20 CVE Published
- 2024-08-04 CVE Updated
- 2024-08-04 First Exploit
- 2024-09-10 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-476: NULL Pointer Dereference
CAPEC
References (7)
URL | Tag | Source |
---|---|---|
https://lists.debian.org/debian-lts-announce/2019/05/msg00012.html | Mailing List | |
https://seclists.org/bugtraq/2019/May/16 | Mailing List |
URL | Date | SRC |
---|---|---|
https://pulsesecurity.co.nz/advisories/atftpd-multiple-vulnerabilities | 2024-08-04 |
URL | Date | SRC |
---|---|---|
https://sourceforge.net/p/atftp/code/ci/382f76a90b44f81fec00e2f609a94def4a5d3580 | 2020-09-28 |
URL | Date | SRC |
---|---|---|
https://security.gentoo.org/glsa/202003-14 | 2020-09-28 | |
https://usn.ubuntu.com/4540-1 | 2020-09-28 | |
https://www.debian.org/security/2019/dsa-4438 | 2020-09-28 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Atftp Project Search vendor "Atftp Project" | Atftp Search vendor "Atftp Project" for product "Atftp" | 0.7.1 Search vendor "Atftp Project" for product "Atftp" and version "0.7.1" | - |
Affected
|