CVE-2009-2958

Priority
Description
The tftp_request function in tftp.c in dnsmasq before 2.50, when
--enable-tftp is used, allows remote attackers to cause a denial of service
(NULL pointer dereference and daemon crash) via a TFTP read (aka RRQ)
request with a malformed blksize option.
Bugs
jdstrand> Dapper does not have tftp code
Assigned-to
jdstrand
Notes
Package
Upstream:released (2.50-1)
More Information

Updated: 2020-03-18 22:00:48 UTC (commit 2ea7df7bd1e69e1e489978d2724a936eb3faa1b8)