Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in AbsoluteTelnet before 2.12 RC10 allows remote attackers to execute arbitrary code via a long window title.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Celestial Software AbsoluteTelnet标题栏远程缓冲区溢出漏洞
Vulnerability Description
AbsoluteTelnet是一款终端客户程序,支持多种协议包括Telnet、SSH1、SSH2等,可使用在Win32平台下。 AbsoluteTelnet对超长标题栏缺少正确边界检查,本地或者远程攻击者可以利用这个漏洞进行缓冲区溢出攻击,可能以进程用户权限在系统上执行任意指令。 当设置程序标题栏(titlebar)过长时,AbsoluteTelnet运行时可覆盖堆栈返回地址,如: export KNUD=`perl -e 'print "A" x 296'` echo -ne "\033]0;$KNUD
CVSS Information
N/A
Vulnerability Type
N/A