CVE-2011-4130: Use After Free
Use-after-free vulnerability in the Response API in ProFTPD before 1.3.3g allows remote authenticated users to execute arbitrary code via vectors involving an error that occurs after an FTP data transfer.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2011-4130?
CVE-2011-4130 has been classified as a high severity vulnerability due to its potential for remote code execution.
How do I fix CVE-2011-4130?
To fix CVE-2011-4130, you should upgrade ProFTPD to version 1.3.3g or later, where the vulnerability is patched.
What versions of ProFTPD are affected by CVE-2011-4130?
CVE-2011-4130 affects ProFTPD versions prior to 1.3.3g, including 1.2.0-rc1, 1.3.3-b, and others listed in the advisory.
What type of vulnerability is CVE-2011-4130?
CVE-2011-4130 is a use-after-free vulnerability that can lead to arbitrary code execution by remote authenticated users.
Can CVE-2011-4130 be exploited remotely?
Yes, CVE-2011-4130 can be exploited remotely, allowing authenticated users to execute arbitrary code on the server.