First published: Wed Nov 23 2022(Updated: )
mod_radius in ProFTPD before 1.3.7c allows memory disclosure to RADIUS servers because it copies blocks of 16 characters.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Proftpd Proftpd | <1.3.7c |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2021-46854.
The title of this vulnerability is "mod_radius in ProFTPD before 1.3.7c allows memory disclosure to RADIUS servers because it copies blocks of 16 characters."
This vulnerability affects ProFTPD versions up to and excluding 1.3.7c.
The severity of CVE-2021-46854 is high, with a severity value of 7.5.
To fix this vulnerability, upgrade to ProFTPD version 1.3.7c or later.