CVE-2005-0468

Description

From CVE.org

Heap-based buffer overflow in the env_opt_add function in telnet.c for various BSD-based Telnet clients allows remote attackers to execute arbitrary code via responses that contain a large number of characters that require escaping, which consumers more memory than allocated.

Statement

Red Hat Enterprise Linux 5 is not vulnerable to this issue as it contains a backported patch.

Acknowledgements

Red Hat would like to thank iDefense for reporting this issue.

Frequently Asked Questions

Want to get errata notifications? Sign up here.