CVE Database
/

CVE-2017-12170

Back to search

CVE-2017-12170

Published: Sep 21, 2017

Modified: Aug 5, 2024

PUBLISHED

Description

Downstream version 1.0.46-1 of pure-ftpd as shipped in Fedora was vulnerable to packaging error due to which the original configuration was ignored after update and service started running with default configuration. This has security implications because of overriding security-related configuration. This issue doesn't affect upstream version of pure-ftpd.

VendorProductVersions

Red Hat, Inc.

pure-ftpd

affected
Fedora downstream version pure-ftpd-1.0.46-1

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now