debian · CVE-2011-4862

Quick triage

Priority: high Published: Updated: Sat, 06 Jun 2026 00:59:12 GMT

View at Official debian advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2011-4862 high priority: Debian including 3 source packages (heimdal, inetutils, krb5), 15 status rows across 5 suites (bookworm, bullseye, forky, sid, trixie): resolved 15.

Description:

Buffer overflow in libtelnet/encrypt.c in telnetd in FreeBSD 7.3 through 9.0, MIT Kerberos Version 5 Applications (aka krb5-appl) 1.0.2 and earlier, Heimdal 1.5.1 and earlier, GNU inetutils, and possibly other products allows remote attackers to execute arbitrary code via a long encryption key, as exploited in the wild in December 2011.

cvelogic Threat Intelligence