CVE-2011-4862
Buffer overflow in libtelnet/encrypt.c in telnetd in FreeBSD 7.3 through 9.0, MIT Kerberos Version 5 Applications (aka krb5-appl) 1.0.2 and earlier, Heimdal 1.5.1 and earlier, GNU inetutils, and possibly other products allows remote attackers to execute arbitrary code via a long encryption key, as exploited in the wild in December 2011.
- Affected products
- Centos, Red Hat, Suse, Krb5, Krb5-64Bit, Krb5-Appl, Krb5-Appl-Clients, Krb5-Appl-Servers
- Gnu Inetutils
- < 1.9
- Heimdal Project Heimdal
- ≤ 1.5.1
- Mit krb5-appl
- ≤ 1.0.2
- Freebsd
- ≤ 9.0
- Fix
- Available
- CVSS 2.0
- 10.0 HIGH
- EPSS
- 95.1% (100th percentile)
- Weakness
- CWE-120
- NVD status
- Modified
- Published
- 2011-12-25
CVE-2011-4862 at NVD
19 known exploits for CVE-2011-4862
Proof-of-concept code and exploit modules indexed by Sploitus
Telnet Service Encryption Key ID Overflow Detection
Cisco Ironport WSA telnetd Remote Code Execution Vulnerability
Telnetd Encryption Key ID Code Execution
Telnetd Encryption Key ID Code Execution
Telnetd Encryption Key ID Code Execution
Telnetd Encryption Key ID Code Execution
FreeBSD telnetd Remote Root
Linux BSD-derived Telnet Service Encryption Key ID Buffer Overflow
FreeBSD Telnet Service Encryption Key ID Buffer Overflow
Linux BSD-derived Telnet Service Encryption Key ID - Remote Buffer Overflow (Metasploit)
FreeBSD - Telnet Service Encryption Key ID Buffer Overflow (Metasploit)
FreeBSD based telnetd encrypt_key_id brute force
FreeBSD Telnet Service Encryption Key ID Buffer Overflow
Linux BSD-derived Telnet Service Encryption Key ID Buffer Overflow
Linux BSD-derived Telnet Service Encyption Key ID Buffer Overflow
FreeBSD Telnet Service Encyption Key ID Buffer Overflow
Telnet Service Encryption Key ID Overflow Detection
TelnetD encrypt_keyid - Function Pointer Overwrite
FreeBSD 'telnetd'守护进程远程缓冲区溢出漏洞