Vulnerability in FileZilla Server?

Need help with FileZilla Server? Something does not work as expected? In this forum you may find an answer.

Moderator: Project members

Post Reply
Message
Author
Seppel20
504 Command not implemented
Posts: 6
Joined: 2022-01-04 08:10

Vulnerability in FileZilla Server?

#1 Post by Seppel20 » 2024-04-22 10:35

I have read about the security vulnerability regarding the faulty implementation of the cryptographic method "Elliptic Curve Digital Signature Algorithm" (ECDSA), which is used to generate NIST P-521 keys (CVE-2024-31497).
This vulnerability affected the old FileZilla client versions.
What about the server? Is it also affected?

User avatar
botg
Site Admin
Posts: 35586
Joined: 2004-02-23 20:49
First name: Tim
Last name: Kosse

Re: Vulnerability in FileZilla Server?

#2 Post by botg » 2024-04-22 12:53

That's an issue affecting the PuTTY SSH client and all software using PuTTY. It does not affect FileZilla Server.

Seppel20
504 Command not implemented
Posts: 6
Joined: 2022-01-04 08:10

Re: Vulnerability in FileZilla Server?

#3 Post by Seppel20 » 2024-04-22 13:48

Thank you!

Post Reply