CVE-2019-19272
26.11.2019, 04:15
An issue was discovered in tls_verify_crl in ProFTPD before 1.3.6. Direct dereference of a NULL pointer (a variable initialized to NULL) leads to a crash when validating the certificate of a client connecting to the server in a TLS client/server mutual-authentication setup.Enginsight
Vendor | Product | Version |
---|---|---|
proftpd | proftpd | 𝑥 < 1.3.6 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration