Debian Netkit-Telnet vulnerabilities
4 known vulnerabilities affecting debian/netkit-telnet.
Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH1LOW1
Vulnerabilities
Page 1 of 1
CVE-2020-10188P2CRITICALCVSS 9.8fixed in inetutils 2:1.9.4-12 (bookworm)2020
CVE-2020-10188 [CRITICAL] CVE-2020-10188: inetutils - utility.c in telnetd in netkit telnet through 0.17 allows remote attackers to ex...
utility.c in telnetd in netkit telnet through 0.17 allows remote attackers to execute arbitrary code via short writes or urgent data, because of a buffer overflow involving the netclear and nextitem functions.
Scope: local
bookworm: resolved (fixed in 2:1.9.4-12)
bullseye: resolved (fixed in 2:1.9.4-12)
forky: resolved (fixed in 2:1.9.4-12)
sid: resolved (fixe
debian
CVE-2005-0469P3HIGHCVSS 7.5fixed in heimdal 0.6.3-10 (bookworm)2005
CVE-2005-0469 [HIGH] CVE-2005-0469: heimdal - Buffer overflow in the slc_add_reply function in various BSD-based Telnet client...
Buffer overflow in the slc_add_reply function in various BSD-based Telnet clients, when handling LINEMODE suboptions, allows remote attackers to execute arbitrary code via a reply with a large number of Set Local Character (SLC) commands.
Scope: local
bookworm: resolved (fixed in 0.6.3-10)
bullseye: resolved (fixed in 0.6.3-10)
forky: resolved (fixed in 0.6.3-10)
sid:
debian
CVE-2005-0488P4LOWCVSS 5.0fixed in krb5 1.8.3+dfsg-4 (bookworm)2005
CVE-2005-0488 [MEDIUM] CVE-2005-0488: krb5 - Certain BSD-based Telnet clients, including those used on Solaris and SuSE Linux...
Certain BSD-based Telnet clients, including those used on Solaris and SuSE Linux, allow remote malicious Telnet servers to read sensitive environment variables via the NEW-ENVIRON option with a SEND ENV_USERVAR command.
Scope: local
bookworm: resolved (fixed in 1.8.3+dfsg-4)
bullseye: resolved (fixed in 1.8.3+dfsg-4)
forky: resolved (fixed in 1.8.3+dfsg-4)
sid: resolve
debian
CVE-2004-0911P4CRITICALCVSS 10.0fixed in netkit-telnet 0.17-26 (bullseye)2004
CVE-2004-0911 [CRITICAL] CVE-2004-0911: netkit-telnet - telnetd for netkit 0.17 and earlier, and possibly other versions, on Debian GNU/...
telnetd for netkit 0.17 and earlier, and possibly other versions, on Debian GNU/Linux allows remote attackers to cause a denial of service (free of an invalid pointer), a different vulnerability than CVE-2001-0554.
Scope: local
bullseye: resolved (fixed in 0.17-26)
debian