{
    "id": "CVE-2001-0554",
    "published": "2001-08-14 04:00:00",
    "last_modified": "2026-06-16 21:54:31",
    "cvss_score": "10.0",
    "cvss_severity": "HIGH",
    "cvss_version": "2.0",
    "cvss_vector": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
    "cwe": "CWE-120",
    "description": "Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You There), which is not properly handled by the telrcv function.",
    "epss_score": "0.38748",
    "epss_percentile": "0.98538",
    "kev": 0,
    "kev_due": null,
    "has_exploit": 1,
    "updated_at": "2026-09-28 18:17:02",
    "priority": {
        "rank": 2,
        "label": "Patch early",
        "why": "A public exploit exists."
    },
    "products": [
        {
            "vendor": "debian",
            "product": "debian_linux"
        },
        {
            "vendor": "freebsd",
            "product": "freebsd"
        },
        {
            "vendor": "ibm",
            "product": "aix"
        },
        {
            "vendor": "mit",
            "product": "kerberos"
        },
        {
            "vendor": "mit",
            "product": "kerberos_5"
        },
        {
            "vendor": "netbsd",
            "product": "netbsd"
        },
        {
            "vendor": "netkit",
            "product": "linux_netkit"
        },
        {
            "vendor": "openbsd",
            "product": "openbsd"
        },
        {
            "vendor": "sgi",
            "product": "irix"
        },
        {
            "vendor": "sun",
            "product": "solaris"
        },
        {
            "vendor": "sun",
            "product": "sunos"
        }
    ],
    "kev_detail": null,
    "exploits": [
        {
            "source": "exploit-db",
            "ref_id": "21018",
            "title": "Solaris 2.x/7.0/8 / IRIX 6.5.x / OpenBSD 2.x / NetBSD 1.x / Debian 3 / HP-UX 10 - 'TelnetD' Remote Buffer Overflow",
            "date": "2001-07-18",
            "url": "https://www.exploit-db.com/exploits/21018"
        }
    ],
    "refs_list": [
        "ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:49.telnetd.asc",
        "ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2001-012.txt.asc",
        "ftp://patches.sgi.com/support/free/security/advisories/20010801-01-P",
        "ftp://stage.caldera.com/pub/security/openserver/CSSA-2001-SCO.10/CSSA-2001-SCO.10.txt",
        "http://archives.neohapsis.com/archives/hp/2001-q4/0014.html",
        "http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000413",
        "http://ftp.support.compaq.com/patches/.new/html/SSRT0745U.shtml",
        "http://online.securityfocus.com/advisories/3476",
        "http://online.securityfocus.com/archive/1/199496",
        "http://online.securityfocus.com/archive/1/199541",
        "http://online.securityfocus.com/archive/1/203000",
        "http://www.calderasystems.com/support/security/advisories/CSSA-2001-030.0.txt",
        "http://www.cert.org/advisories/CA-2001-21.html",
        "http://www.ciac.org/ciac/bulletins/l-131.shtml",
        "http://www.cisco.com/warp/public/707/catos-telrcv-vuln-pub.shtml",
        "http://www.debian.org/security/2001/dsa-070",
        "http://www.debian.org/security/2001/dsa-075",
        "http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-068.php3",
        "http://www.novell.com/linux/security/advisories/2001_029_nkitb_txt.html",
        "http://www.osvdb.org/809",
        "http://www.redhat.com/support/errata/RHSA-2001-099.html",
        "http://www.redhat.com/support/errata/RHSA-2001-100.html",
        "http://www.securityfocus.com/archive/1/197804",
        "http://www.securityfocus.com/bid/3064",
        "https://exchange.xforce.ibmcloud.com/vulnerabilities/6875"
    ]
}