Source: netkit-telnet
Version: 0.17-41.2
Severity: important
Tags: security upstream
Control: clone -1 -2
Control: reassign -2 src:netkit-telnet-ssl 0.17.41+0.2-3.2
Control: retitle -2 netkit-telnet-ssl: CVE-2020-10188
Control: found -1 0.17-41
Control: found -2 0.17.41+0.2-3

Hi,

The following vulnerability was published for netkit-telnet and
netkit-telnet-ssl, filling this for starting tracking the issue.
Any more insights into it?

CVE-2020-10188[0]:
| utility.c in telnetd in netkit telnet through 0.17 allows remote
| attackers to execute arbitrary code via short writes or urgent data,
| because of a buffer overflow involving the netclear and nextitem
| functions.


If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2020-10188
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-10188
[1] 
https://appgateresearch.blogspot.com/2020/02/bravestarr-fedora-31-netkit-telnetd_28.html

Regards,
Salvatore

Reply via email to