summaryrefslogtreecommitdiffstats
path: root/meta-python/recipes-devtools/python/python3-async-timeout_4.0.3.bb
diff options
context:
space:
mode:
authorGyorgy Sarvari <skandigraun@gmail.com>2026-02-02 22:14:01 +0100
committerAnuj Mittal <anuj.mittal@oss.qualcomm.com>2026-02-03 08:07:28 +0530
commitfd6e0c37627717f00d37d8f7911fb0bc44b835b0 (patch)
tree5058af5c341ac4aa36a1860119fcf6942b0a5419 /meta-python/recipes-devtools/python/python3-async-timeout_4.0.3.bb
parent0080dd79731efa1cca150730c5ac39bad82f7095 (diff)
downloadmeta-openembedded-fd6e0c37627717f00d37d8f7911fb0bc44b835b0.tar.gz
proftpd: ignore CVE-2021-47865
Details: https://nvd.nist.gov/vuln/detail/CVE-2021-47865 This CVE was opened based on a 5 years old Github issue[1], and has been made public recently. The CVE wasn't officially disputed (yet?), but based on the description and the given PoC the application is working as expected. The vulnerability description and the PoC basically configures proftpd to accept maximum x connections, and then when the user tries to open x + 1 concurrent connections, it refuses new connections over the configured limit. See also discussion in the Github issue. It seems that it won't be fixed, because there is nothing to fix. [1]: https://github.com/proftpd/proftpd/issues/1298 Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com> Signed-off-by: Anuj Mittal <anuj.mittal@oss.qualcomm.com>
Diffstat (limited to 'meta-python/recipes-devtools/python/python3-async-timeout_4.0.3.bb')
0 files changed, 0 insertions, 0 deletions