An issue was discovered in Bftpd before 5.4. There is a heap-based off-by-one error during file-transfer error checking.
A product calculates or uses an incorrect maximum or minimum value that is 1 more, or 1 less, than the correct value.
Link | Tags |
---|---|
https://fossies.org/linux/bftpd/CHANGELOG | third party advisory release notes |
http://bftpd.sourceforge.net/news.html#302460 | third party advisory |