CVE-2011-4862
Buffer overflow in libtelnet/encrypt.c in telnetd in FreeBSD 7.3 through 9.0, MIT Kerberos Version 5 Applications (aka krb5-appl) 1.0.2 and earlier, Heimdal 1.5.1 and earlier, GNU inetutils, and possibly other products allows remote attackers to execute…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 95.0%, higher than 100% of all known CVEs. Patch or mitigate before the next change window.
Description
Buffer overflow in libtelnet/encrypt.c in telnetd in FreeBSD 7.3 through 9.0, MIT Kerberos Version 5 Applications (aka krb5-appl) 1.0.2 and earlier, Heimdal 1.5.1 and earlier, GNU inetutils, and possibly other products allows remote attackers to execute arbitrary code via a long encryption key, as exploited in the wild in December 2011.
- CVSS 2.0
- 10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 94.98% probability · 100th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-120
- Affected
- gnu/inetutils · heimdal project/heimdal · mit/krb5-appl · freebsd/freebsd · fedoraproject/fedora · debian/debian linux · opensuse/opensuse · suse/linux enterprise desktop · suse/linux enterprise server · suse/linux enterprise software development kit
- Source
- secteam@freebsd.org
References
- http://archives.neohapsis.com/archives/bugtraq/2011-12/0172.htmlBroken Link
- http://git.savannah.gnu.org/cgit/inetutils.git/commit/?id=665f1e73cdd9b38e2d2e11b8db9958a315935592Patch, Third Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2012-January/071627.htmlThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2012-January/071640.htmlThird Party Advisory
- http://lists.freebsd.org/pipermail/freebsd-security/2011-December/006117.htmlVendor Advisory
- http://lists.freebsd.org/pipermail/freebsd-security/2011-December/006118.htmlVendor Advisory
- http://lists.freebsd.org/pipermail/freebsd-security/2011-December/006119.htmlVendor Advisory
- http://lists.freebsd.org/pipermail/freebsd-security/2011-December/006120.htmlVendor Advisory
- http://lists.opensuse.org/opensuse-security-announce/2012-01/msg00002.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2012-01/msg00004.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2012-01/msg00005.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2012-01/msg00007.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2012-01/msg00010.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2012-01/msg00011.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2012-01/msg00014.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2012-01/msg00015.htmlMailing List, Third Party Advisory
- http://osvdb.org/78020Broken Link
- http://secunia.com/advisories/46239Third Party Advisory
- http://secunia.com/advisories/47341Third Party Advisory
- http://secunia.com/advisories/47348Third Party Advisory
- http://secunia.com/advisories/47357Third Party Advisory
- http://secunia.com/advisories/47359Third Party Advisory
- http://secunia.com/advisories/47373Third Party Advisory
- http://secunia.com/advisories/47374Third Party Advisory
- http://secunia.com/advisories/47397Third Party Advisory
- http://secunia.com/advisories/47399Third Party Advisory
- http://secunia.com/advisories/47441Third Party Advisory
- http://security.freebsd.org/advisories/FreeBSD-SA-11:08.telnetd.ascMitigation, Vendor Advisory
- http://security.freebsd.org/patches/SA-11:08/telnetd.patchPatch, Vendor Advisory
- http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2011-008.txtPatch, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.