Fabian Baeumer, Marcus Brinkmann and Joerg Schwenk discovered that the SSH protocol used in FileZilla is prone to a prefix truncation attack, known as the "Terrapin attack". A remote attacker could use this issue to downgrade or disable some security features and obtain sensitive information.
{ "availability": "No subscription required", "binaries": [ { "binary_version": "3.46.3-1ubuntu0.1", "binary_name": "filezilla" }, { "binary_version": "3.46.3-1ubuntu0.1", "binary_name": "filezilla-common" }, { "binary_version": "3.46.3-1ubuntu0.1", "binary_name": "filezilla-dbgsym" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "3.58.0-1ubuntu0.1", "binary_name": "filezilla" }, { "binary_version": "3.58.0-1ubuntu0.1", "binary_name": "filezilla-common" }, { "binary_version": "3.58.0-1ubuntu0.1", "binary_name": "filezilla-dbgsym" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "3.65.0-3ubuntu0.1", "binary_name": "filezilla" }, { "binary_version": "3.65.0-3ubuntu0.1", "binary_name": "filezilla-common" }, { "binary_version": "3.65.0-3ubuntu0.1", "binary_name": "filezilla-dbgsym" } ] }