https://seclists.org/oss-sec/2026/q1/201: Telnetd Vulnerability port
Published Feb 24, 2026
·Updated
Affected Software
2 affected components
redhat/telnet=0.17
inetutils/telnet=0.17
Frequently Asked Questions
1
What is the severity of CVE-2026-XXXX?
The severity of CVE-2026-XXXX is currently under evaluation, but it poses a significant risk to systems running vulnerable telnet services.
2
How do I fix CVE-2026-XXXX?
To fix CVE-2026-XXXX, it is recommended to update to the latest version of telnetd that implements the OpenSSH AcceptEnv-style approach.
3
Which software is affected by CVE-2026-XXXX?
CVE-2026-XXXX affects the telnet services in Red Hat and Inetutils distributions.
4
When was CVE-2026-XXXX published?
CVE-2026-XXXX was published on February 24, 2026.
5
What is the impact of CVE-2026-XXXX?
CVE-2026-XXXX may allow unauthorized information disclosure or command execution due to improper handling of environment variables.