CVE-2020-10188 - log back

CVE-2020-10188 edited at 02 Feb 2021 20:52:50
Severity
- Unknown
+ High
Remote
- Unknown
+ Remote
Type
- Unknown
+ Arbitrary code execution
Description
+ A vulnerability was found in inetutils before version 1.9.4.91 where incorrect bounds checks in the telnet server’s (telnetd) handling of short writes and urgent data could lead to information disclosure and corruption of heap data. An unauthenticated remote attacker could exploit these bugs by sending specially crafted telnet packets to achieve arbitrary code execution in the telnet server.
References
+ https://bugzilla.redhat.com/show_bug.cgi?id=1811673
+ https://git.savannah.gnu.org/gitweb/?p=inetutils.git;a=commitdiff;h=cd7e7e685daeafb68f19347747af6340731a4518
CVE-2020-10188 created at 02 Feb 2021 20:49:20
Severity
+ Unknown
Remote
+ Unknown
Type
+ Unknown
Description
References
Notes