CVE-2005-0469 describes a buffer overflow vulnerability in the slc_add_reply function of various BSD-based Telnet clients, including ncsa telnet. This flaw allows remote attackers to execute arbitrary code by sending a crafted reply containing a large number of Set Local Character (SLC) commands. With a CVSS score of 7.5, this vulnerability is considered highly severe, enabling unauthenticated attackers to achieve partial confidentiality, integrity, and availability impacts over the network with low attack complexity. Despite its age and severity, there is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:a:ncsa:telnet:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
security flaw
Mar 28, 2005Buffer overflow in the slc_add_reply function in various BSD-based Telnet clients, when handling LINEMODE suboptions, allows remote attackers to execute arbitrary code via a reply with a large number of Set Local Character (SLC) commands.
Mar 2, 2005