CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
Percentile
71.2%
vsftpd FTP daemon in Red Hat Linux 9 is not compiled against TCP wrappers (tcp_wrappers) but is installed as a standalone service, which inadvertently prevents vsftpd from restricting access as intended.
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
Debian | 12 | all | vsftpd | < 3.0.3-13 | vsftpd_3.0.3-13_all.deb |
Debian | 11 | all | vsftpd | < 3.0.3-12 | vsftpd_3.0.3-12_all.deb |
Debian | 999 | all | vsftpd | < 3.0.3-13.1 | vsftpd_3.0.3-13.1_all.deb |
Debian | 13 | all | vsftpd | < 3.0.3-13.1 | vsftpd_3.0.3-13.1_all.deb |