Total vulnerabilities in the database
The mod_tls module in ProFTPD before 1.3.5b and 1.3.6 before 1.3.6rc2 does not properly handle the TLSDHParamFile directive, which might cause a weaker than intended Diffie-Hellman (DH) key to be used and consequently allow attackers to have unspecified impact via unknown vectors.
Software | From | Fixed in |
---|---|---|
proftpd / proftpd | - | 1.3.5.x |
proftpd / proftpd | 1.3.6-rc1 | 1.3.6-rc1.x |
opensuse / opensuse | 13.1 | 13.1.x |
fedoraproject / fedora | 22 | 22.x |
fedoraproject / fedora | 23 | 23.x |