FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2011-4862

This CVE name corresponds to:

Entered Topic
2011-12-26 krb5-appl -- telnetd code execution vulnerability

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type Candidate
Name CVE-2011-4862
Phase Assigned(20111219)

Description

Buffer overflow in libtelnet/encrypt.c in telnetd in FreeBSD 7.3 through 9.0, MIT Kerberos Version 5 Applications (aka krb5-appl) 1.0.2 and earlier, Heimdal 1.5.1 and earlier, GNU inetutils, and possibly other products allows remote attackers to execute arbitrary code via a long encryption key, as exploited in the wild in December 2011.

References

Source Reference
BUGTRAQ 20111226 MITKRB5-SA-2011-008 buffer overflow in telnetd [CVE-2011-4862]
EXPLOIT-DB 18280
MLIST [freebsd-security] 20111223 Merry Christmas from the FreeBSD Security Team
MLIST [freebsd-security] 20111223 Merry Christmas from the FreeBSD Security Team
MLIST [freebsd-security] 20111223 Merry Christmas from the FreeBSD Security Team
MLIST [freebsd-security] 20111223 Merry Christmas from the FreeBSD Security Team
CONFIRM http://security.freebsd.org/patches/SA-11:08/telnetd.patch
CONFIRM http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2011-008.txt
CONFIRM http://git.savannah.gnu.org/cgit/inetutils.git/commit/?id=665f1e73cdd9b38e2d2e11b8db9958a315935592
DEBIAN DSA-2372
DEBIAN DSA-2373
DEBIAN DSA-2375
FEDORA FEDORA-2011-17492
FEDORA FEDORA-2011-17493
FREEBSD FreeBSD-SA-11:08
MANDRIVA MDVSA-2011:195
REDHAT RHSA-2011:1851
REDHAT RHSA-2011:1852
REDHAT RHSA-2011:1854
REDHAT RHSA-2011:1853
SUSE SUSE-SU-2012:0010
SUSE SUSE-SU-2012:0018
SUSE SUSE-SU-2012:0042
SUSE SUSE-SU-2012:0050
SUSE openSUSE-SU-2012:0019
SUSE openSUSE-SU-2012:0051
SUSE SUSE-SU-2012:0024
SUSE SUSE-SU-2012:0056
OSVDB 78020
SECTRACK 1026460
SECTRACK 1026463
SECUNIA 47341
SECUNIA 47348
SECUNIA 47357
SECUNIA 47359
SECUNIA 47373
SECUNIA 47374
SECUNIA 47397
SECUNIA 47399
SECUNIA 47441
SECUNIA 46239
XF multiple-telnetd-bo(71970)