This application requires Javascript for optimal performance.

Libtelnet.Key.Remote.Buffer.Overflow

Release Date

Jan 19, 2012

Severity

critical

Impact

System Compromise: Remote attackers can gain control of vulnerable systems

Description

This indicates an attack attempt against a Buffer Overflow vulnerability in multiple products using libtelnet/encrypt.c in telnetd.

The vulnerability is caused by an error when the software handles a specially crafted telnet request. It allows a remote attacker to execute arbitrary code.

Affected Products

FreeBSD 7.3 through 9.0
MIT Kerberos Version 5 Applications (aka krb5-appl) 1.0.2 and earlier
Heimdal 1.5.1 and earlier
Red Hat Enterprise Linux 5 server
Red Hat Enterprise Linux AS v4
Red Hat Enterprise Linux Desktop v5 client
Red Hat Enterprise Linux ES v4
Red Hat Enterprise Linux WS v4
Red Hat Desktop v4
Red Hat Desktop Workstation v5 client

Recommended Actions

Apply the most recent upgrade or patch from the vendor, or refer to their website for suggested workaround.
FreeBSD: http://security.freebsd.org/advisories/FreeBSD-SA-11:08.telnetd.asc
MIT Kerberos: http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2011-008.txt
Heimdal: http://www.h5l.org/

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2011-4862

Reference/s

http://www.securityfocus.com/bid/51182 (BugTraq)

Reference: VID-30721