Security Advisory

CVE-2020-6097

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-09-10 14:13:17
Last updated 2024-08-04 08:47:41
Assigner talos
State PUBLISHED

Description

An exploitable denial of service vulnerability exists in the atftpd daemon functionality of atftp 0.7.git20120829-3.1+b1. A specially crafted sequence of RRQ-Multicast requests trigger an assert() call resulting in denial-of-service. An attacker can send a sequence of malicious packets to trigger this vulnerability.