In ProFTPD 1.3.7, it is possible to corrupt the memory pool by interrupting the data transfer channel. This triggers a use-after-free in alloc_pool in pool.c, and possible remote code execution. CREATE(Triage):(User=admin) CVE-2020-9273 (https://nvd.nist.gov/vuln/detail/CVE-2020-9273)