VDB
CVE-2001-0554
CVE-2001-0554
PUBLISHED
CVSS 10 CRITICAL
Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You There), which is not properly handled by the telrcv function.
EPSS 38.75% · 98.4th percentile
Risk Scores
CVSS 2.0
10
EPSS Score
38.75%
98.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| netkit | linux_netkit | 0.12, 0.11, 0.10 |
| debian | debian_linux | 2.2 |
| sun | sunos | 5.3, 5.8, 5.0 |
| sgi | irix | 6.5 |
| sun | solaris | 2.6 |
| ibm | aix | 4.3.3, 4.3.2, 5.1 |
| openbsd | openbsd | 2.8, 2.3, 2.4 |
| mit | kerberos | 1.0 |
| mit | kerberos_5 | 1.1, 1.1.1, 1.2.2 |
| freebsd | freebsd | 3.0, 2.2.2, 4.2 |
| netbsd | netbsd | 1.5, 1.5.1, 1.4.3 |
Timeline
- Jul 18, 2001 CVE Published
- Jul 18, 2001 PoC Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Dec 19, 2022 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 26, 2023 EPSS Score
- Jul 18, 2023 EPSS Score
References
- 20020129 Cisco CatOS Telnet Buffer Vulnerability vendor-advisory
- DSA-075 vendor-advisory
- CA-2001-21 third-party-advisory
- NetBSD-SA2001-012 vendor-advisory
- L-131 third-party-advisory
- SSRT0745U vendor-advisory
- 809 vdb
- MSS-OAR-E01-2001:298 vendor-advisory
- 20010810 ADV/EXP: netkit <=0.17 in.telnetd remote buffer overflow mailing-list
- SuSE-SA:2001:029 vendor-advisory
- HPSBUX0110-172 vendor-advisory
- 20010801-01-P vendor-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2001-0554 advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6875 url
- http://online.securityfocus.com/archive/1/199496 url
- http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-068.php3 url
- http://www.redhat.com/support/errata/RHSA-2001-099.html url
- http://www.securityfocus.com/bid/3064 url
- ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:49.telnetd.asc technical
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000413 technical
…and 6 more