Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Mageia 7 Security Advisory: MGASA-2020-0211 Critical Telnet Issues

mageia
Calendar Grey May 15, 2020
Dist Mageia Esm H88
Discover the recent security patch for netkit-telnet, which tackles significant vulnerabilities that could allow for unauthorized code execution.
Updated netkit-telnetd packages fix security vulnerability: A vulnerability was found where incorrect bounds checks in the telnet server’s (telnetd) handling of short writes and...

Summary

Updated netkit-telnetd packages fix security vulnerability:
A vulnerability was found where incorrect bounds checks in the telnet server’s (telnetd) handling of short writes and urgent data, could lead to information disclosure and corruption of heap data. An unauthenticated remote attacker could exploit these bugs by sending specially crafted telnet packets to achieve arbitrary code execution in the telnet server (CVE-2020-10188).

References

- https://bugs.mageia.org/show_bug.cgi?id=26296

- https://access.redhat.com/errata/RHSA-2020:1349

- https://www.cve.org/CVERecord?id=CVE-2020-10188

Resolution

SRPMS

- 7/core/netkit-telnet-0.17-18.1.mga7

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 15 May 2020
URL: https://advisories.mageia.org/MGASA-2020-0211.html
Type: security
CVE: CVE-2020-10188

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here