Vulnerability Intelligence Report
CVE-2020-10188
utility.c in telnetd in netkit telnet through 0.17 allows remote attackers to execute arbitrary code via short writes or urgent data, because of a buffer overflow involving the netclear and nextitem functions.
No Active Exploit Signals
CVSS Base Score
9.8
CRITICAL
EPSS Probability:74.51%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| netkit_telnet_project | netkit_telnet | all |
| fedoraproject | fedora | 30, 31, 32 |
| debian | debian_linux | 8.0, 9.0 |
| arista | eos | 4.24.0f |
| oracle | communications_performance_intelligence_center | 10.4.0.2 |
| juniper | junos | 12.3, 12.3r12, 12.3x48, 12.3x50, 15.1, 15.1x49, 15.1x49-d30, 15.1x49-d60, 15.1x49-d140, 15.1x49-d150, 15.1x49-d160, 16.1, 17.2, 17.2x75, 17.3, 17.4, 18.1, 18.2, 18.2x75, 18.2x75-d10, 18.2x75-d30, 18.3, 18.4, 19.1, 19.2, 19.3, 19.4, 20.1 |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
EPSS Score
74.513%
GitHub Advisory
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | MITRE Corporation · N/A · USA |
| Reserved | 2020-03-06T00:00:00 |
| Published | 2020-03-06T14:07:21 |
| Last Updated | 2026-01-21T01:32:48 |
Community Chatter & Buzz