Critical GNU Inetutils telnetd flaw allows pre-auth remote code execution over port 23
VPN Central [Unofficial]
March 18, 2026
A critical vulnerability in GNU Inetutils telnetd can let an unauthenticated remote attacker trigger memory corruption during the Telnet handshake and potentially execute code as root. The flaw is tracked as CVE-2026-32746, affects GNU Inetutils telnetd through version 2.7, and carries a CVSS 3.1 score of 9.8 from MITRE. The bug sits in the LINEMODE […]
The post Critical GNU Inetutils telnetd flaw allows pre-auth remote code execution over port 23 appeared first on VPN Central.
Discussion in the ATmosphere