Detail
Determines whether the encryption option is supported on a remote telnet server. Some systems (including FreeBSD and the krb5 telnetd available in many Linux distributions) implement this option incorrectly, leading to a remote root vulnerability. This script currently only tests whether encryption is supported, not for that particular vulnerability.
References:
- FreeBSD Advisory: http://lists.freebsd.org/pipermail/freebsd-announce/2011-December/001398.html
- FreeBSD Exploit: http://www.exploit-db.com/exploits/18280/
- RedHat Enterprise Linux Advisory: https://rhn.redhat.com/errata/RHSA-2011-1854.html
Solution Advice
You can download the latest patches and follow the required steps from the references part not to be vulnerable.
Get AI-powered remediation steps tailored to your asset.
Try AI Solutions →