By the Year

In 2020 there have been 2 vulnerabilities in Pureftpd Pure Ftpd with an average score of 7.5 out of ten. Last year Pure Ftpd had 1 security vulnerability published. That is, 1 more vulnerability have already been reported in 2020 as compared to last year. Interestingly, the average vulnerability score and the number of vulnerabilities for 2020 and last year was the same.

Year Vulnerabilities Average Score
2020 2 7.50
2019 1 7.50
2018 0 0.00

It may take a day or so for new Pure Ftpd vulnerabilities to show up. Additionally vulnerabilities may be tagged under a different product or component name.

Latest Pureftpd Pure Ftpd Security Vulnerabilities

An issue was discovered in Pure-FTPd 1.0.49

CVE-2020-9274 7.5 - High - February 26, 2020

An issue was discovered in Pure-FTPd 1.0.49. An uninitialized pointer vulnerability has been detected in the diraliases linked list. When the *lookup_alias(const char alias) or print_aliases(void) function is called, they fail to correctly detect the end of the linked list and try to access a non-existent list member. This is related to init_aliases in diraliases.c.

Access of Uninitialized Pointer

An issue was discovered in Pure-FTPd 1.0.49

CVE-2020-9365 7.5 - High - February 24, 2020

An issue was discovered in Pure-FTPd 1.0.49. An out-of-bounds (OOB) read has been detected in the pure_strcmp function in utils.c.

Out-of-bounds Read

In Pure-FTPd 1.0.49

CVE-2019-20176 7.5 - High - December 31, 2019

In Pure-FTPd 1.0.49, a stack exhaustion issue was discovered in the listdir function in ls.c.

Uncontrolled Resource Consumption ('Resource Exhaustion')