It was discovered that atftp's FTP server did not properly handler certain input. An attacker could use this to to cause a denial of service (crash) or possibly execute arbitrary code. (CVE-2019-11365)
It was discovered that atftp's FTP server did not make proper use of mutexes when locking certain data structures. An attacker could use this to cause a denial of service via a NULL pointer dereference. (CVE-2019-11366)
{ "availability": "No subscription required", "binaries": [ { "binary_version": "0.7.git20120829-3.1~0.16.04.1", "binary_name": "atftp" }, { "binary_version": "0.7.git20120829-3.1~0.16.04.1", "binary_name": "atftp-dbgsym" }, { "binary_version": "0.7.git20120829-3.1~0.16.04.1", "binary_name": "atftpd" }, { "binary_version": "0.7.git20120829-3.1~0.16.04.1", "binary_name": "atftpd-dbgsym" } ] }