CVE-2005-0469
heimdal - buffer overflow
EPSS 8.6%
描述
Buffer overflow in the slc_add_reply function in various BSD-based Telnet clients, when handling LINEMODE suboptions, allows remote attackers to execute arbitrary code via a reply with a large number of Set Local Character (SLC) commands.
如何修補 CVE-2005-0469
要修補 CVE-2005-0469,請將受影響套件升級到下列已修補版本。
- Debian/heimdal—升級至 0.6.3-10 或更新版本
- Debian/heimdal—升級至 0.4e-7.woody.11 或更新版本
- Debian/krb5—升級至 1.3.6-2 或更新版本
- Debian/netkit-telnet—升級至 0.17-28 或更新版本
- —升級至 0.17-18woody3 或更新版本
- —升級至 0.17.24+0.1-7.1 或更新版本
- —升級至 0.17.17+0.1-2woody4 或更新版本
CVE-2005-0469 正在被利用嗎?
中等 — EPSS 為 8.6%,可持續追蹤但非最高優先。
受影響套件(7)
- from 0, < 0.6.3-10
- from 0, < 0.4e-7.woody.11
- from 0, < 1.3.6-2
- from 0, < 0.17-28
- from 0, < 0.17-18woody3
- from 0, < 0.17.24+0.1-7.1
- from 0, < 0.17.17+0.1-2woody4