PT-2006-6777 · Philserv · Tftpd32

Art Manion

+1

·

Published

2006-11-28

·

Updated

2018-10-17

·

CVE-2006-6141

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Tftpd32 version 3.01
Description A buffer overflow issue exists, allowing remote attackers to cause a denial of service. This occurs when a long GET or PUT request is not properly handled, specifically when the request is displayed in the title of the gauge window.
Recommendations For Tftpd32 version 3.01, consider restricting the length of GET or PUT requests to prevent the buffer overflow issue until a patch is available. As a temporary workaround, avoid displaying long requests in the title of the gauge window to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-6141

Affected Products

Tftpd32