PoC Index

CVE-2011-4862

HIGH 10.0EPSS 95.0%

Buffer overflow in libtelnet/encrypt.c in telnetd in FreeBSD 7.3 through 9.0, MIT Kerberos Version 5 Applications (aka krb5-appl) 1.0.2 and earlier, Heimdal 1.5.1 and earlier, GNU inetutils, and possibly other products allows remote attackers to execute arbitrary code via a long encryption key, as exploited in the wild in December 2011.

CVSS v2.0
10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS
94.98% chance of exploitation in the next 30 days, 100th percentile
Published
2011-12-25
Updated
2024-08-07

Proof-of-concept exploits (4)

Metasploit modules (1)

ExploitDB entries (3)

References

Related