CVE-2019-19272
26.11.2019, 04:15
An issue was discovered in tls_verify_crl in ProFTPD before 1.3.6. Direct dereference of a NULL pointer (a variable initialized to NULL) leads to a crash when validating the certificate of a client connecting to the server in a TLS client/server mutual-authentication setup.Enginsight
| Vendor | Product | Version |
|---|---|---|
| proftpd | proftpd | 𝑥 < 1.3.6 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration