CVE-2016-3125
05.04.2016, 20:59
The mod_tls module in ProFTPD before 1.3.5b and 1.3.6 before 1.3.6rc2 does not properly handle the TLSDHParamFile directive, which might cause a weaker than intended Diffie-Hellman (DH) key to be used and consequently allow attackers to have unspecified impact via unknown vectors.Enginsight
| Vendor | Product | Version |
|---|---|---|
| proftpd | proftpd | 𝑥 ≤ 1.3.5 |
| proftpd | proftpd | 1.3.6:rc1 |
| opensuse | opensuse | 13.1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| proftpd-dfsg |
|
Common Weakness Enumeration
References