]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core.git/commit
inetutils: CVE-2022-39028 - fix remote DoS vulnerability in inetutils-telnetd
authorMinjae Kim <flowergom@gmail.com>
Mon, 26 Sep 2022 21:33:08 +0000 (23:33 +0200)
committerSteve Sakoman <steve@sakoman.com>
Mon, 26 Sep 2022 22:29:44 +0000 (12:29 -1000)
commit1c385e70d4bfab2334361ba82f29988bb11d6902
tree54b56b287197b76be3c428eb8abc35c6973092f1
parentef38f7acee3f0ae400138fa60f4695a86dffc16e
inetutils: CVE-2022-39028 - fix remote DoS vulnerability in inetutils-telnetd

Fix telnetd crash if the first two bytes of a new connection
are 0xff 0xf7 (IAC EC) or 0xff 0xf8 (IAC EL).

CVE: CVE-2022-39028

Signed-off-by:Minjae Kim <flowergom@gmail.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-connectivity/inetutils/inetutils/CVE-2022-39028.patch [new file with mode: 0644]
meta/recipes-connectivity/inetutils/inetutils_1.9.4.bb