Secunia Logo
 
CVE Reference: CVE-2005-0469
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2005-0469

Description:
Buffer overflow in the slc_add_reply function in various BSD-based Telnet clients, when handling LINEMODE suboptions, allows remote attackers to execute arbitrary code via a reply with a large number of Set Local Character (SLC) commands.

CVE Status:
Candidate

References:

UBUNTU
  http://www.ubuntulinux.org/usn/usn-224-1

SUNALERT
  http://sunsolve.sun.com/search/document.do?assetkey=1-26-57755-1
  http://sunsolve.sun.com/search/document.do?assetkey=1-26-57761-1
  http://sunsolve.sun.com/search/document.do?assetkey=1-26-101671-1
  http://sunsolve.sun.com/search/document.do?assetkey=1-26-101665-1

SGI

SAID
  Secunia Advisory: SA14745
  Secunia Advisory: SA17899

REDHAT
  http://www.redhat.com/support/errata/RHSA-2005-327.html
  http://www.redhat.com/support/errata/RHSA-2005-330.html

MANDRAKE
  http://www.mandrakesoft.com/security/advisories?name=MDKSA-2005:061

IDEFENSE
  http://www.idefense.com/application/poi/display?id=220&type=vulnerabilities

GENTOO
  http://www.gentoo.org/security/en/glsa/glsa-200503-36.xml

FREEBSD

DEBIAN
  http://www.debian.org/security/2005/dsa-703
  http://www.debian.de/security/2005/dsa-731
  http://www.debian.org/security/2005/dsa-699
  http://www.debian.org/security/2005/dsa-697

CONFIRM
  http://web.mit.edu/kerberos/advisories/MITKRB5-SA-2005-001-telnet.txt

CERT-VN
  291924

BID
  12918


Return to the previous page.