---
cve: "CVE-2020-10188"
severity: "LOW"
cvss: 3.1
epss: "74.3%"
vendor: "n/a"
kev: false
exploited: false
published: "2020-03-06 15:15:14"
tags: [cve, security, low]
source: tsecurity.de CVE-Dossier
exported: "2026-09-08T16:14:07+02:00"
---

# CVE-2020-10188

> 3.1 LOW · 🧪 PoC

## Beschreibung

utility.c in telnetd in netkit telnet through 0.17 allows remote attackers to execute arbitrary code via short writes or urgent data, because of a buffer overflow involving the netclear and nextitem functions.

## Referenzen

- <https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/HLU6FL24BSQQEB2SJC26NLJ2MANQDA7M/>
- <https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/7FMTRRQTYKWZD2GMXX3GLZV46OLPCLVK/>
- <https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/K3VJ6V2Z3JRNJOBVHSOPMAC76PSSKG6A/>
- <https://lists.debian.org/debian-lts-announce/2020/05/msg00012.html>
- <https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-telnetd-EFJrEzPx>
- <https://lists.debian.org/debian-lts-announce/2020/08/msg00038.html>
- <https://www.oracle.com/security-alerts/cpuApr2021.html>
- <https://appgateresearch.blogspot.com/2020/02/bravestarr-fedora-31-netkit-telnetd_28.html>
- <https://github.com/krb5/krb5-appl/blob/d00cd671dfe945791b33d4f1f6a5c57ae1667ef8/telnet/telnetd/utility.c#L205-L216>
- <https://www.arista.com/en/support/advisories-notices/security-advisories/10702-security-advisory-48>
- <http://www.openwall.com/lists/oss-security/2026/01/20/8>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2020-10188) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
