HomeDefectsLIN1024-424
Fixed

LIN1024-424 : Security Advisory - tftpy - CVE-2023-46566

Created: Apr 29, 2024    Updated: Jun 10, 2025
Resolved Date: Jun 5, 2025
Previous ID: LINCD-16333
Found In Version: 10.24.33.1
Fix Version: 10.24.33.10
Severity: Standard
Applicable for: Wind River Linux LTS 24
Component/s: Userspace

Description

Buffer Overflow vulnerability in msoulier tftpy commit 467017b844bf6e31745138a30e2509145b0c529c allows a remote attacker to cause a denial of service via the parse function in the TftpPacketFactory class.



CREATE(Triage):(User=admin) CVE-2023-46566 (https://nvd.nist.gov/vuln/detail/CVE-2023-46566)

CVEs