This update addresses a null pointer dereferencing issue that could cause the session for a client that sent specially-crafted commands to the server to crash (not the sessions of other clients).

Source: Fedora 40: proftpd 2025-d37ad923f5 Security Advisory Updates