The code in src/sftpserver.c did not verify the validity of certain pointers and expected them to be valid. A NULL pointer dereference could have been occurred that typically causes a crash and thus a denial-of-service (CVE-2020-16135).
{ "section": "core" }
"https://advisories.mageia.org/MGASA-2020-0324.json"