Logo
vulnerabilityCVE-2026-32746
Name
CVE-2026-32746
Source
NVD ( link)Debian ( link)
Description
telnetd in GNU inetutils through 2.7 allows an out-of-bounds write in the LINEMODE SLC (Set Local Characters) suboption handler because add_slc does not check whether the buffer is full.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
inetutils
Exploitable

Vulnerability Ratings#


9.8
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
yocto
master
2.7
Patched
yocto
scarthgap
2.5
Patched

Resolved with patches#


inetutils (yocto:master)

#
Title
Author
Resolve
1
telnetd: fix stack buffer overflow processing SLC suboption
Collin Funk <collin.funk1@gmail.com>
CVE-2026-32746

inetutils (yocto:scarthgap)

#
Title
Author
Resolve
1
telnetd: fix stack buffer overflow processing SLC suboption triplets
Collin Funk <collin.funk1@gmail.com>
CVE-2026-32746