← Back

Tftpd32

tftpd32

Vendor: Philippe Jounin • 5 CVEs

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Philippe Jounin
1Tftpd32
Apr 29, 2026
Dec 13, 2013
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Format string vulnerability in the client in Tftpd32 before 4.50 allows remote servers to cause a denial of service (crash) or possibly execute arbitrary code via format string specifiers in the Remote File field.
1Philippe Jounin
1Tftpd32
Apr 23, 2026
Nov 20, 2009
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Race condition in Philippe Jounin Tftpd32 before 2.80 allows remote attackers to cause a denial of service (daemon crash) via invalid "connect frames."
1Philippe Jounin
1Tftpd32
Apr 23, 2026
Nov 20, 2009
N/A· v4
N/A· v3
5.0 MEDIUM· v2
tftpd in Philippe Jounin Tftpd32 2.74 and earlier, as used in Wyse Simple Imager (WSI) and other products, allows remote attackers to cause a denial of service (daemon crash) via a long filename in a TFTP read (aka RRQ o...Show more
tftpd in Philippe Jounin Tftpd32 2.74 and earlier, as used in Wyse Simple Imager (WSI) and other products, allows remote attackers to cause a denial of service (daemon crash) via a long filename in a TFTP read (aka RRQ or get) request, a different vulnerability than CVE-2002-2226.Show less
1Philippe Jounin
1Tftpd32
Apr 23, 2026
Nov 28, 2006
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Buffer overflow in Tftpd32 3.01 allows remote attackers to cause a denial of service via a long GET or PUT request, which is not properly handled when the request is displayed in the title of the gauge window.
1Philippe Jounin
1Tftpd32
Apr 16, 2026
Jan 21, 2006
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Format string vulnerability in Tftpd32 2.81 allows remote attackers to cause a denial of service via format string specifiers in a filename in a (1) GET or (2) SEND request.