Debian Security Advisory

DLA-639-1 mactelnet -- LTS security update

Date Reported:
25 Sep 2016
Affected Packages:
mactelnet
Vulnerable:
Yes
Security database references:
In Mitre's CVE dictionary: CVE-2016-7115.
More information:
  • CVE-2016-7115

    Buffer overflow in the handle_packet function in mactelnet.c in the client in MAC-Telnet 0.4.3 and earlier allows remote TELNET servers to execute arbitrary code via a long string in an MT_CPTYPE_ENCRYPTIONKEY control packet.

For Debian 7 Wheezy, these problems have been fixed in version 0.3.4-1+deb7u1.

We recommend that you upgrade your mactelnet packages.

Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS